HCL Verse client setup for OIDC authentication

This topic describes the setup process for HCL Verse clients with OIDC authentication.

In a typical HCL Traveler environment configured for Basic authentication, mobile clients are configured with the Traveler server endpoint. The user’s http login username and password are required to complete the setup. After setup, the mobile clients handle any authentication issue from the service without involving user interaction (with a few exceptions, such as password expiration).

In an environment configured for OIDC authentication, the setup and re-authentication differs. During client setup, after specifying the Traveler server endpoint address, the end user is presented with the OIDC login form. The user enters the Domino user id and http password in the login form. The user may also select to create a passkey during the login process and will be guided through the passkey setup required on the Android device to complete the authentication flow. For more information on using passkeys on Android devices please see https://support.google.com/android/answer/14124480.
Note: Once authenticated, the client setup proceeds through the standard initial configuration flow for the HCL Verse applications. However, the client does not capture the user’s login credentials in the account settings. On any subsequent authentication issue, the user is presented with the OIDC login form again.