Salesforce Community signs in external users of an Experience Cloud site, customers and partners rather than internal Salesforce users. Because each site has its own host, this connector takes a Domain URI.

## Copy the redirect URI

In the [Authdog console](https://console.authdog.com), select the project and environment, open **Authentication > Providers**, find **Salesforce Community**, and click **Enable**. Copy the redirect URI shown in the form:

```url
https://identity.authdog.com/api/v1/callback/<connectionId>
```

## Create the connected app

1. Create a connected app in the org that owns the Experience Cloud site, as in the [Salesforce connector steps](/docs/connectors/salesforce).
2. Set the **Callback URL** to the redirect URI from Authdog.
3. In **Digital Experiences > All Sites**, note the site's full URL including any path prefix.
4. Make sure the site is active and allows self-registration or has the users you intend to sign in.
5. Copy the **Consumer Key** and **Consumer Secret**.

## Configure Authdog

| Field | Value |
| --- | --- |
| **Client ID** | The **Consumer Key** of the connected app |
| **Client Secret** | The **Consumer Secret** of the connected app |
| **Domain URI** | Your Experience Cloud site URL, e.g. `https://acme.my.site.com/customers` |

Save, then toggle the connection **active**.

## What Salesforce Community returns

Authdog requests the `openid email profile` scopes and reads the profile from ``<domain>/services/oauth2/userinfo``.

The site's own userinfo endpoint returns the community user's id, username, email, and display name, scoped to that site, not to the internal org directory.

Include the site's path prefix in the Domain URI. A site published at `/customers` will not authorize requests sent to the bare domain.

## Test it

1. Open your environment's hosted sign-in page, or link to `https://identity.authdog.com/api/v1/signin/<connectionId>`.
2. Select the Salesforce Community button and complete the flow.
3. Confirm the user appears under **Users** in the console with a Salesforce Community identity linked.

## Troubleshooting

| Symptom | Cause |
| --- | --- |
| `invalid_client_id` | The connected app belongs to a different org than the site |
| Endless redirect to the site login page | The site is inactive, or the user is not a member of it |
| Redirect or callback URL error | The URI registered with the provider does not match Authdog's exactly |
| Works in one environment only | Each environment has its own `connectionId`, and so its own redirect URI to register |

## Related

| Read | To learn how to |
| --- | --- |
| [Connectors](/docs/connectors) | Set up any other social provider |
| [Salesforce](/docs/connectors/salesforce) | Sign in internal org users instead |
