CIAM FAQ6 — How to create Guest User accounts with the WSO2 Identity Server without Java code or XACML policies?

Dinali Rosemin Dabarera
5 min readDec 20, 2023
image from splash(free download)

This is one of the most common questions you will come up with when you design your onboarding processes for your CIAM solution. As a good SaaS application, whether it is B2B or B2C, you should let your customers try out your service before you let them purchase it. This will provide more credibility to your products and services and will help to retain long-term customers.

If you are using WSO2 Identity Server as your CIAM solution for your SaaS application, you might wonder how you should do it. Because out-of-the-box there is no straightforward feature called “guest user accounts” or “temporary accounts” in the feature list of WSO2 Identity Server.

Otherwise, if you happen to use XACML policies to create the guest user flow with WSO2 Identity Server, with the next release of Identity Server 7.0 — XACML will be deprecated. Hence, you have to figure out an alternative for that.

The solutions that I am proposing here will help all of you to think differently and figure out the best approach to creating guest user accounts in WSO2 IDM.

Using Adaptive Authentication

--

--

Dinali Rosemin Dabarera

Integration Consultant (IAM) @ Yenlo Nederland B.V, specialized in WSO2 IAM, an Identity Evangelist, a blogger, a nature lover, a backpacker