* Enterprise-style Single Sign-On (SSO) will be enabled for OIDC clients created by https://registry.access-ci.org/ and https://registry-test.access-ci.org/ . This will allow users who log on to multiple ACCESS services to skip CILogon's "Select an Identity Provider" page. For example, when a user first logs on to https://allocations.access-ci.org/ , the user will be prompted to log in with an ACCESS ID (either an ACCESS username or a linked account such as a university). If the user next logs on to https://support.access-ci.org/ , CILogon's "Select an Identity Provider" screen will be bypassed and the user will be logged in with their current ACCESS session. Note that https://registry.access-ci.org/ and https://registry-test.access-ci.org/ are explicitly excluded from SSO since users need to be able to log on with non-ACCESS accounts for identity linking.