When Workspace ONE Access and Workspace ONE UEM services are integrated, UEM user accounts are synchronized from the UEM console to the Workspace ONE Access console to enable Workspace ONE UEM users single sign-on access to the Workspace ONE Intelligent Hub app and their app resources without requiring reauthentication.

In the Workspace ONE UEM console, you can set up either Active Directory-based account access to user accounts, or you can create basic user accounts that are not integrated to your UEM directory service. When you integrate with the Workspace ONE Access service, you select which type of user accounts to sync to the Workspace ONE Access service.

In addition, you can also use third-party identity providers such as Okta and Ping to provide single sign-on authentication to the Workspace ONE Intelligent Hub app. See Third-Party Identity Providers as an Application Source for more information.