In applications you develop with Kuika, you can use the Kuika Auth authentication method by default, or you can customize the authentication process by adding a different Authentication Provider. You can configure these settings through the Kuika Config Manager module.
In this guide, you’ll learn step-by-step how to add LDAP, OAuth 2.0, and Generic Auth (REST) providers as Authentication Providers, as well as how to configure MSAL integration for Microsoft sign-in.


In the Authentication Provider Settings window that opens, select the provider type from the Type (required) dropdown menu:

The fields in the window will change depending on the type you select. For each type, enter a descriptive name for the provider in the Name (required) field, then fill in the fields described in the relevant section below.
LDAP (Lightweight Directory Access Protocol) enables secure login to your application by authenticating users defined in Active Directory. Fill in the following fields in the REQUEST section:


Once LDAP integration is complete, the credentials of users logging into your application are verified through Active Directory.
OAuth 2.0 is an authorization protocol that allows users to securely access an application without sharing their credentials. The window consists of two tabs: REQUEST and RESPONSE.
REQUEST tab

RESPONSE tab
In this tab, you map the fields in the JSON response returned by the provider to their equivalents in Kuika:

When a Refresh Token is matched in OAuth 2.0, Kuika automatically renews the access token. You do not need to enter a separate Refresh Token URL for this.
Generic Auth (REST) allows authentication to be performed through your own REST API service. The window consists of three tabs: TOKEN, REFRESH TOKEN, and RESPONSE.
TOKEN tab

To add a new parameter, click the ADD PARAMETERS link and select one of the options: Custom, Username, or Password. To delete a parameter you’ve added, click the trash can icon next to it.

REFRESH TOKEN tab
This tab allows you to refresh the token when the session expires.


RESPONSE tab
On this tab, you map the fields in the response returned by your service to their corresponding fields in Kuika:

After entering the information, click the CREATE button to create the provider.
MSAL allows your users to sign in to your app using their Microsoft accounts. MSAL is not listed among the Authentication Provider types. It is configured via the separate MSAL section on the Authentication & Authorization screen.

After entering the information, click the CREATE button, select the configuration you created from the MSAL dropdown menu, and click the SAVE button to save it.
Once you’ve completed these steps, you can start using the authentication provider that best suits your needs in your app.
By correctly configuring the Authentication Provider settings, you can easily integrate your organization’s existing authentication infrastructure into your Kuika applications.