In this article, we're going over the definition of Single Sign-on (SSO), its use, and its benefits. To enable SSO, you need to have an Enterprise subscription plan and a Team owner or Admin role. To learn more about Roles & Rights, please visit this article.
Single sign-on (SSO)
Single sign-on (SSO) is an authentication method that allows users to securely log into multiple applications and websites using a single set of credentials through an identity provider. So, instead of logging into each of your apps, you can log into one workspace and access all available tools.
How does Single Sign-on work?
Single Sign-On (SSO) functions by establishing trust between a service provider and an identity provider. This is achieved through the exchange of digital certificates, which enable the service provider to validate information from the identity provider and confirm its source.
At The Brief, we offer two identity provider protocols, OpenID and SAML 2.0.
How to enable Single Sign-on?
Before you set up your SSO, you will need to enable it by following the steps below.
- From the Dashboard, click on your profile picture in the right top corner.
- Go to Manage account.
- Go to Single sign-on under Team Settings on the left side panel.
- Click Enable SSO.
-
Select the SSO protocol you wish to proceed with:
- OpenID
- SAML 2.0
- Click Set up.
How to configure OpenID?
You will first need to connect your domain and our application for the OpenID configuration. To do this, follow the steps below.
- Click Copy TXT records and add them to your domain hosts DNS records.
- Paste your URL and click Add domain to validate the field.
- Insert the Sign-in redirect URI redirect provided by your identity provider.
- Insert the Sign-out redirect URI redirect provided by your identity provider.
- Insert the Client ID.
- Insert the Client Secret.
- Paste the Autoconfig URL.
- Click Test connection & finish setup.
How to configure SAML 2.0?
Similar to the OpenID, you'll need to establish a connection between your domain and Creatopy by following these steps:
- Click Copy TXT records and add them to your domain host's DNS records.
- Paste your URL into the Add domain to validate the domain.
- Copy & paste the Single sign-on service URI to your Identity Provider.
- Copy & paste the Service Provider Entity ID to your Identity Provider.
- Paste the URL of the Autoconfig file provided by the Identity Provider.
- Once done, click Test connection & finish setup.
🔒 If you'd like your team to go back to using Creatopy's built-in authentication system, you can remove the single sign-on (SSO) integration. When SSO is turned off, all team members will sign in using their email address and Creatopy password. To remove it, access Single Sign-on from Team Settings, scroll down to the bottom of the page, and click Remove this integration.