1. Sitecore Content Hub

User authentication

Note

To configure Content Hub, you must either be a superuser or have the necessary permissions granted to you through user group policies.

Sitecore Content Hub provides flexible authentication options, and the method used in your implementation is typically determined by your organization's requirements. Content Hub is accessed directly and is not available through the Sitecore Cloud portal. For information about configuring authentication and securing your environment, see the Security best practices.

Note

Authenticated users cannot access or interact with Content Hub key features unless they are assigned the necessary user group policies.

There are two methods for users to authenticate to Content Hub:

MethodExplanation
User name and passwordUsers authenticate by browsing to their Content Hub instance and entering their user name and password. A superuser or a user with the necessary permissions can invite new users to Content Hub.
Single sign-on (SSO)To centrally manage user authentication, a Content Hub superuser can configure the Authentication setting to use a supported external authentication provider. To help you configure the Authentication setting, we provide an example of AD SSO configuration.

Information architects and technical users can find more detailed guidance in the Accelerate Cookbook for Content Hub, a collection of recipes that provides information to help you successfully set up, configure, and implement Content Hub.
Note

When switching a user who is set up to have single sign-on authentication back to user name and password authentication, a disruption in the login flow might occur. To rectify this, delete M.ExternalLogin entities.

Tip

Content Hub information architects and those in technical roles can find more detailed information about single sign on in the Accelerate Cookbook for Content Hub, a collection of recipes that provides information to help you successfully set up, configure, and implement Content Hub.

The following examples can help you understand the Authentication configuration setting in Content Hub:

Note

External applications authenticate to Content Hub using tokens and client credentials.

If you have suggestions for improving this article, let us know!