Configure AI Authentication
Who can use this page
/aiauthentication is for administrators who manage the AI services used by AI Agents and Knowledge. Regular users do not need to open it to use an assistant.
What the page controls
The page title is AI Authentication & Runtime Config. Workspace AI administrators can see AI Models and Default Bindings. Platform administrators can additionally see Provider Connections and Runtime Settings.
| Tab | What you can do |
|---|---|
| Provider Connections | Add, edit, enable or disable, validate, and delete provider connections. Cards show provider type, base URL, whether a key is present, and model count. |
| AI Models | Search the configured model tree, add or edit models for their use slot, validate them, and remove obsolete entries. |
| Default Bindings | Select the active default model for each available slot and choose the embedding dimension. |
| Runtime Settings | Add, edit, delete, and refresh platform-level runtime settings. |
Provider types offered by the page can include OpenAI Compatible, Anthropic, Cohere, DeepSeek, OpenRouter, Google Gemini, LlamaCloud, and Custom. Some providers expose a model catalogue to help choose a supported model.
The model slots cover the functions shown in the page, including generation, embedding, table summarization, and enrichment. A model appearing in the catalogue does not make it active until it is configured and selected in the relevant binding.
Safe change process
- Confirm the provider, model, slot, or runtime setting you intend to change.
- Add or edit the smallest required item, then use Validate where it is available.
- Save the model and select it under Default Bindings only when it should become the workspace default.
- If changing an embedding model or dimension triggers Reindex Required, read the warning and confirm only when you are prepared to re-embed affected documents.
- Test with a non-sensitive document or assistant conversation.
- Monitor Knowledge and Usage before making another broad change.
Provider secrets are masked after saving. Never paste a provider secret into a support request, document, screenshot, or AI Agent conversation.
