Capabilities
The connector reads identities from a single Ory project’s Admin API and
exposes them as users for cross-connector identity correlation. Ory
organizations and Ory Permissions (Keto) roles are not synced — there are no
groups, entitlements, or grants.
This connector is read-only. It does not provision or modify identities in
Ory.
Gather Ory credentials
1
Open the Ory Console and select the project
you want ConductorOne to read.
2
Go to the project’s API Keys page and create a new project API key.
3
Copy the API key and store it securely.
4
Note the project’s Admin API base URL. For Ory Network this is
https://{project_slug}.projects.oryapis.com/ (include the trailing
slash). Self-hosted Ory Kratos deployments use their own admin host.Configure the Ory connector
- Cloud-hosted
- Self-hosted
Follow these instructions to use a built-in, no-code connector hosted by C1.Done. Your Ory connector is now pulling identity data into C1.
1
In C1, navigate to Apps > Connectors and click Add connector.
2
Search for Ory and click Add.
3
Choose where to add the connector: Create a new app, or Add to an existing app (then select the app).If you’re creating a new app, choose whether to link it to an application discovered from your identity provider: select Yes and pick the IdP application, or No to continue with just the connector.
4
Set the connector’s Name and, optionally, a Description.
5
Click the pencil icon next to Owners to choose who can configure and manage this connector.
6
Click Add. The connector is created and its configuration page opens.
7
Find the Settings area of the page and click Edit.
8
Enter the Ory credentials:
- Base URL: The project’s Admin API base URL, including the trailing slash, for example
https://acme.projects.oryapis.com/. - API token: The project API key you created in the Ory Console.
- Project slug (optional): The Ory project slug for display only. This does not affect which host is contacted.
9
Click Save.
10
The connector’s label changes to Syncing, followed by Connected. You can view the logs to ensure that information is syncing.