Configure EDB Agent Governance. For the authentication model and credential handling behind these settings, see Securing access and handling credentials.
Managing identity providers
After signing in at BFF_PUBLIC_BASE_URL, go to Settings → Identity Providers to manage the identity providers your users sign in through:
Add an OIDC, SAML, or LDAP connector for your organization's identity provider.
After federating, switch day-to-day login away from the bootstrap admin to the federated provider, keeping the bootstrap admin as a break-glass account.
Restrict the admin allowlist to the people who hold administrator access.
Securing and monitoring your deployment
For credential storage, network protection, and TLS verification requirements, see Securing access and handling credentials. Once running, monitor overall liveness through the container status and nginx upstream errors — Dex exposes a health endpoint that gates startup of the backend and nginx.