Identity
Admins
Federated authentication
Making sure your users only use federated single sign-on to authenticate
Federating Identity with Azure Active Directory
How to add or replace an x509 certificate for Azure Active Directory federations
Managing Authorities for SSO Domain Access
OIDC: Identity and Microsoft Entra ID
Configuring multi-factor authentication (MFA)
Identity and MFA FAQs for admins
Password policy
Resetting passwords
User roles and permissions
Creating and managing users
Manage Organisation Co-branding
Onboarding new users with welcome emails
Adding custom content to welcome emails
Creating and managing custom scopes
Add Login URLs to your Organisation
MFA - mandatory for Admins
Unlock user account
Setting up a SAML Client
An Introduction to Multi-Factor Authentication & Single Sign-On
Identity and MFA FAQs
OneAdvanced Single Sign-on login process when using an authenticator app
OneAdvanced Single Sign-on login process when using email for authentication
OneAdvanced Single Sign-on login process for federated accounts
OneAdvanced Identity login using username
User Journey for EasyPass (Passkeys)
Security questions
How to help keep your OneAdvanced account safe and secure
Integrations
OneAdvanced AI
Getting started
Introducing OneAdvanced AI
How does OneAdvanced AI work?
Benefits of using OneAdvanced AI
Limitations of using OneAdvanced AI
Definition of terms
Prompts
Getting started with prompts in OneAdvanced AI
Prompt engineering
Avoiding Common Pitfalls and Errors
Using Prompts in OneAdvanced AI
Using OneAdvanced AI to Summarise a Document
Using OneAdvanced AI to Simplify Information
Using OneAdvanced AI to Compare Documents
Using OneAdvanced AI to Create Visuals Using Data
Private Spaces
Intelligent Chat Agents
Introducing Intelligent Chat Agents
Accessing Intelligent Chat Agents
Using Intelligent Chat Agents
Intelligent Chat Agents Catalogue
Administration
FAQs
Web Search
Platform
Helpful how-to guides
How to stop unwanted time-outs
How To - Add a Spreadsheet or Chart to your Desk
How To - Add Youtube Videos to a Desk
How To - Add a Spotify Playlist to a Desk
How To - Add Microsoft Stream Videos to a Desk
Admin
Desks
Applets
Applets Overview
Advanced Financials Applets
Setting up Advanced Financials Applets
Advanced HR Applets
Clear Review Applets
Contract Management Applets
Countdown Applet
Desk Notes Applet
iFrame Applet
My Link/Links Applet
RSS Feed Applet
Ideas Applets
Tasks
Data Platform
Data Platform FAQs
Data Platform (Bring Your Own BI/Data Share) - Connection Options
Data Platform (Bring Your Own BI/Data Share) - User Licence Assignment Administration
Data Platform (Bring Your Own BI/Data Share) – How to Connect Microsoft Power BI to OneAdvanced Data Platform
Data Platform (Bring Your Own BI/Data Share) - OAuth Client Credentials Service Users
Data Platform (Bring Your Own BI/Data Share) - Snowflake ODBC Connector Configuration Guide
Data Platform (Bring Your Own BI/Data Share) - Connecting Microsoft Excel to Snowflake Using ODBC
OneAdvanced Mobile app
How to install the OneAdvanced mobile app on your device
Instructions: Adding OneAdvanced Mobile App to Microsoft Intune Company Portal
Licencing
- All topics
- Data Platform
- Data Platform (Bring Your Own BI/Data Share) - OAuth Client Credentials Service Users
Data Platform (Bring Your Own BI/Data Share) - OAuth Client Credentials Service Users
Updated
by paul.davidson@oneadvanced.com
In order to use OAuth client credentials flow authorisation to access your data, you must first create a service user which will provide you with an OAuth client ID, secret and other details required by either Snowflake ODBC client or the Snowflake RESTful API.
You can conveniently set up and manage your own OAuth Client Credentials Service Users directly in apps.oneadvanced.com. You will need to be a Customer admin to use this functionality.
You can find Data Platform Admin in the Applications section of your menu.
On the Service Users page, you will see a list of all your existing clients. From this list, you can manage your Service Users through several actions such as edit, delete and rotate the secret. You can also add new OAuth Client Credentials Service Users from here.

Creating a new service user
- Open the Service Users page and click on Add service user button at the top right.
- Provide a username then click the Dataset Grants dropdown to select the product dataset(s) you require this user to have access to - at least 1 dataset must be selected.

- Click Add service user to create the client.
- After the user is created, the credentials you require will be displayed - make sure to manage the secrets appropriately.
Managing secrets
For security reasons, secrets are hidden by default. You can view the secret by clicking on the eye icon. You can copy secrets to your clipboard using the Copy button to make it easy to input.

In cases of loss, theft, or to ensure good security practices, the secret can be rotated. This involves generating a new random string as a secret.
To rotate a secret, go to the Service Users screen, click on the actions icon and select Rotate secret.
You will need to input the service user's name to confirm the operation, which can't be undone. Once the rotation is successful, the old secret will immediately no longer be usable.

Making changes to an existing service user
You can only make changes to the selected dataset grants for an existing service user. From the service users screen, click on the actions icon and select Edit.

Deleting a service user
You can delete a client from the service users screen by clicking more options and selecting Delete. Service user removal is immediate and cannot be undone.