# Custom Auth 2.0 WEB SERVICES Source

**URL:** <https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730>\
**Category:** SHF Discussion and Questions\
**Tags:** webservice-connector, connectors, identity-security-cloud\
**Created:** [June 9, 2025, 11:17am UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730 "2025-06-09T11:17:45Z")\
**Posts on this page:** 10\
**Page:** 1

<div class="post-metadata">

**Author:** ![vcarelli](https://avatars.discourse-cdn.com/v4/letter/v/71e660/32.png) [@vcarelli](https://developer.sailpoint.com/discuss/u/vcarelli)\
**Post date:** [June 9, 2025, 11:17am UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/1 "2025-06-09T11:17:45Z")

</div>

Hi, I need help to configure a web services connector that has a py script with client id and secret based on oauth2.0 as authentication. I need to know how to configure the test connection and custom authentication. Can anyone help me?

---

<div class="post-metadata">

**Author:** ![RAKRHEEM](https://avatars.discourse-cdn.com/v4/letter/r/f05b48/32.png) [@RAKRHEEM](https://developer.sailpoint.com/discuss/u/RAKRHEEM)\
**Post date:** [June 9, 2025, 11:31am UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/2 "2025-06-09T11:31:04Z")

</div>

Hi @vcarelli,  
Thank you for the post. Please go through this document which clearly mentions what needs to be added for Oauth2.0 authentication. Let me know if you still need any help regarding the same..

> **[OAuth 2.0 Authentication](https://documentation.sailpoint.com/connectors/webservices/help/integrating_webservices/oauth_2.0_authentication.html)**
>
> SailPoint Connectors Documentation

Thanks

---

<div class="post-metadata">

**Author:** ![vcarelli](https://avatars.discourse-cdn.com/v4/letter/v/71e660/32.png) [@vcarelli](https://developer.sailpoint.com/discuss/u/vcarelli)\
**Post date:** [June 9, 2025, 12:44pm UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/3 "2025-06-09T12:44:14Z")

</div>

Hi Rakesh Bhati,

Basically the webservice connector has client id and client secret generated by Azure AD while the APIs run on another service.

Example:

Azure AD client id and secret  
Generated token  
With the generated token I access the target system that provides me the service and I do account aggregations, entitlement aggregations etc

---

<div class="post-metadata">

**Author:** ![JackSparrow](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/jacksparrow/32/19685_2.png) [@JackSparrow](https://developer.sailpoint.com/discuss/u/JackSparrow)\
**Post date:** [June 9, 2025, 1:01pm UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/4 "2025-06-09T13:01:12Z")

</div>

Hi @vcarelli ,

You mean that you got client id and secret by registering the target application in Azure AD? In this case how you are getting the token? Is that never expiring one?

---

<div class="post-metadata">

**Author:** ![vcarelli](https://avatars.discourse-cdn.com/v4/letter/v/71e660/32.png) [@vcarelli](https://developer.sailpoint.com/discuss/u/vcarelli)\
**Post date:** [June 9, 2025, 1:12pm UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/5 "2025-06-09T13:12:56Z")

</div>

Yes, token expire after 1 hour.

---

<div class="post-metadata">

**Author:** ![JackSparrow](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/jacksparrow/32/19685_2.png) [@JackSparrow](https://developer.sailpoint.com/discuss/u/JackSparrow)\
**Post date:** [June 9, 2025, 1:19pm UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/6 "2025-06-09T13:19:04Z")

</div>

ok, is your target application is web-based application? Does it have any API endpoints for authentication, aggregation etc.? Best way is to use application end points. I don’t think we can integrate it using Azure AD credentials

---

<div class="post-metadata">

**Author:** ![vcarelli](https://avatars.discourse-cdn.com/v4/letter/v/71e660/32.png) [@vcarelli](https://developer.sailpoint.com/discuss/u/vcarelli)\
**Post date:** [June 9, 2025, 1:23pm UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/7 "2025-06-09T13:23:41Z")

</div>

Hi theja, i tried on postman, and it worked.  
The step that i have done are:  
Generate bearer token with Client ID and Client Secret on this URL  
[https://login.microsoftonline.comx/XXX/oauth2/v2.0/token](https://login.microsoftonline.comx/XXX/oauth2/v2.0/token)

This api returns token and after that I use this token for another api  
https://api----xxxx----.com/xxxxxxxxx/getAccounts

And it worked!

Now, How can i implement this solution on my source?

---

<div class="post-metadata">

**Author:** ![JackSparrow](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/jacksparrow/32/19685_2.png) [@JackSparrow](https://developer.sailpoint.com/discuss/u/JackSparrow)\
**Post date:** [June 9, 2025, 4:00pm UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/8 "2025-06-09T16:00:19Z")

</div>

Hi Vito,

You can go for custom authentication. Below are the steps.

1. Select “Custom Authentication” as authentication type in Connection setting. Just provide base URL. Other fields are optional.

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/4/f/4fad6eb4a56d7afbb46e1bf8e0ca77965f0cfc25.png)

1. In HTTP Operation, define first operation as “custom Authentication”. Settings as follow  

2. Define 2 HTTP operation as “Test Connection”. Settings as follows

---

<div class="post-metadata">

**Author:** ![vcarelli](https://avatars.discourse-cdn.com/v4/letter/v/71e660/32.png) [@vcarelli](https://developer.sailpoint.com/discuss/u/vcarelli)\
**Post date:** [June 10, 2025, 5:24am UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/9 "2025-06-10T05:24:32Z")

</div>

Hi Theja,  
I tried your solutions, but it didn’t work. I have this error in test connection

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/8/2/82bdd3fb02c6aa1a6d9f563e3ae7df0d06ebf56d.png)

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [August 9, 2025, 5:25am UTC](https://developer.sailpoint.com/discuss/t/custom-auth-2-0-web-services-source/142730/10 "2025-08-09T05:25:07Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
