Maintaining username auto update in UKG

Problem

In UKG, each employee has two separate records: an employee profile record and an underlying user record used for security, including SSO capabilities.

When Connect to AD sends the email address from [target-system] to UKG, the [target-system] email address is only written back to the employee profile record in UKG. However, this process does not automatically update the underlying user record.

This results in a mismatch between the employee profile record and the user record, which causes single sign-on (SSO) issues since SSO expects the email address to match.

Solution

To ensure SSO works, we need to configure UKG to automatically update the underlying user record when a change is made to the employee profile record. 

To do so, navigate to Federated SSO > Configurations and set the username (UPN) to the Primary Email Address. 

This will ensure that once Connect to AD writes the [target-system] email address back in UKG, the underlying user record will automatically be updated as well.

For more information about setting up this UKG update trigger, please contact UKG support.

This article is exclusively for UKG Pro. If you use UKG Ready, please ensure the correct source is selected from the drop-down menu at the top right side of your screen.

Was this article helpful?

Comments

0 comments

Please sign in to leave a comment.