Associate the local directory with a built-in identity provider in the Workspace ONE Access console and enable the Password (Local Directory) authentication method so that the local users can be authenticated.


In the Integrations > Authentication Methods page, enable and configure the Password (Local Directory) authentication method.

In the Resources > Policies > NETWORK RANGES page, add the Network ranges to define IP addresses that local users can use.


  1. In the Workspace ONE Access console Integrations > Identity Providers page, click Add.
  2. Select Built-in IDP.
  3. Enter the following information.
    Option Description
    Identity Provider Name Enter a name for the identity provider. For example, Local Users.
    Users Select the local directory you created.
    Network Select the networks from which this identity provider can be accessed.
    Authentication Method Select Password (Local Directory).
    KDC Certificate Export Download the certificate if you are configuring mobile SSO for Workspace ONE UEM-managed iOS devices.
    Screenshot of Create Built-In IDP page
  4. Click SAVE.


The identity provider is created and associated with the local directory.

You can use the same identity provider for multiple local directories.

What to do next

Create local users and groups. You create local users and groups in the Accounts > User Groups page. See Managing Users and Groups in Workspace ONE Access for more information.