<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>idea Support for Multiple Simultaneous SAML and/or OIDC Identity Providers in ArcGIS Enterprise in ArcGIS Enterprise Ideas</title>
    <link>https://community.esri.com/t5/arcgis-enterprise-ideas/support-for-multiple-simultaneous-saml-and-or-oidc/idi-p/1711522</link>
    <description>&lt;P&gt;&lt;STRONG&gt;Category:&lt;/STRONG&gt; Security / Authentication / Identity Management&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Current Limitation:&lt;/STRONG&gt;&lt;BR /&gt;ArcGIS Enterprise currently supports only one SAML identity provider (IdP) and one OIDC identity provider configured at the same time at the organization level.&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Use Case / Role &amp;amp; Context:&lt;/STRONG&gt;&lt;BR /&gt;As an ArcGIS Enterprise administrator, I need to authenticate distinct user populations against different identity providers within the same organization — for example:&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;Internal staff via a corporate SAML or OIDC IdP for SSO,&lt;/LI&gt;&lt;LI&gt;priviledged internal staff for Administration via&amp;nbsp;a corporate SAML or OIDC IdP with 2FA,&lt;/LI&gt;&lt;LI&gt;External users via a federated government identity scheme (e.g., AGOV/SwissID in Switzerland) for public-facing or partner access.&lt;/LI&gt;&lt;/UL&gt;&lt;P class=""&gt;Because only one SAML and one OIDC IdP can be active at a time, organizations with multiple legitimate identity sources are currently forced to either consolidate incompatible user populations behind a single IdP, or deploy separate ArcGIS Enterprise organizations solely to work around this limitation — which significantly increases licensing, infrastructure, and administrative overhead.&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Proposed Solution:&lt;/STRONG&gt;&lt;BR /&gt;Allow ArcGIS Enterprise to register and operate multiple SAML and/or multiple OIDC identity providers simultaneously at the organization level, similar to capabilities already available in modern IAM/CIAM platforms (e.g., Azure AD B2C, Auth0, Keycloak, Okta).&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Impact / Business Value:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;Avoids unnecessary duplication of ArcGIS Enterprise infrastructure purely to work around authentication constraints.&lt;/LI&gt;&lt;LI&gt;Enables secure onboarding of external users via national/government identity federation schemes without compromising internal SSO architecture.&lt;/LI&gt;&lt;LI&gt;Supports organizations with multiple legitimate identity domains (internal, external, partner) within a single Enterprise deployment.&lt;/LI&gt;&lt;/UL&gt;&lt;P class=""&gt;&lt;STRONG&gt;Current Workaround:&lt;/STRONG&gt;&lt;BR /&gt;None available other than deploying separate ArcGIS Enterprise organizations, which is costly and operationally complex.&lt;/P&gt;</description>
    <pubDate>Wed, 01 Jul 2026 12:48:20 GMT</pubDate>
    <dc:creator>ValeskaKolligs</dc:creator>
    <dc:date>2026-07-01T12:48:20Z</dc:date>
    <item>
      <title>Support for Multiple Simultaneous SAML and/or OIDC Identity Providers in ArcGIS Enterprise</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/support-for-multiple-simultaneous-saml-and-or-oidc/idi-p/1711522</link>
      <description>&lt;P&gt;&lt;STRONG&gt;Category:&lt;/STRONG&gt; Security / Authentication / Identity Management&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Current Limitation:&lt;/STRONG&gt;&lt;BR /&gt;ArcGIS Enterprise currently supports only one SAML identity provider (IdP) and one OIDC identity provider configured at the same time at the organization level.&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Use Case / Role &amp;amp; Context:&lt;/STRONG&gt;&lt;BR /&gt;As an ArcGIS Enterprise administrator, I need to authenticate distinct user populations against different identity providers within the same organization — for example:&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;Internal staff via a corporate SAML or OIDC IdP for SSO,&lt;/LI&gt;&lt;LI&gt;priviledged internal staff for Administration via&amp;nbsp;a corporate SAML or OIDC IdP with 2FA,&lt;/LI&gt;&lt;LI&gt;External users via a federated government identity scheme (e.g., AGOV/SwissID in Switzerland) for public-facing or partner access.&lt;/LI&gt;&lt;/UL&gt;&lt;P class=""&gt;Because only one SAML and one OIDC IdP can be active at a time, organizations with multiple legitimate identity sources are currently forced to either consolidate incompatible user populations behind a single IdP, or deploy separate ArcGIS Enterprise organizations solely to work around this limitation — which significantly increases licensing, infrastructure, and administrative overhead.&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Proposed Solution:&lt;/STRONG&gt;&lt;BR /&gt;Allow ArcGIS Enterprise to register and operate multiple SAML and/or multiple OIDC identity providers simultaneously at the organization level, similar to capabilities already available in modern IAM/CIAM platforms (e.g., Azure AD B2C, Auth0, Keycloak, Okta).&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Impact / Business Value:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;Avoids unnecessary duplication of ArcGIS Enterprise infrastructure purely to work around authentication constraints.&lt;/LI&gt;&lt;LI&gt;Enables secure onboarding of external users via national/government identity federation schemes without compromising internal SSO architecture.&lt;/LI&gt;&lt;LI&gt;Supports organizations with multiple legitimate identity domains (internal, external, partner) within a single Enterprise deployment.&lt;/LI&gt;&lt;/UL&gt;&lt;P class=""&gt;&lt;STRONG&gt;Current Workaround:&lt;/STRONG&gt;&lt;BR /&gt;None available other than deploying separate ArcGIS Enterprise organizations, which is costly and operationally complex.&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jul 2026 12:48:20 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/support-for-multiple-simultaneous-saml-and-or-oidc/idi-p/1711522</guid>
      <dc:creator>ValeskaKolligs</dc:creator>
      <dc:date>2026-07-01T12:48:20Z</dc:date>
    </item>
    <item>
      <title>Re: Support for Multiple Simultaneous SAML and/or OIDC Identity Providers in ArcGIS Enterprise</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/support-for-multiple-simultaneous-saml-and-or-oidc/idc-p/1711546#M4664</link>
      <description>&lt;P&gt;I can't endorse/support this idea enough, any enterprise platform today needs to support multiple identity providers of the same type.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jul 2026 13:37:09 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/support-for-multiple-simultaneous-saml-and-or-oidc/idc-p/1711546#M4664</guid>
      <dc:creator>JoshuaBixby</dc:creator>
      <dc:date>2026-07-01T13:37:09Z</dc:date>
    </item>
  </channel>
</rss>

