Single-Sign On (SSO)feature

Prev Next

This feature is only available to specific plans

Autify Nexus provides an SSO feature that allows authentication through specific Identity Providers (IdP).

This feature enables users to access Autify using the authentication service accounts already in use within their organization.

It helps to improve security and centralize account management.

Supported IdPs

Autify Nexus supports the following IdPs that are compliant with the SAML (Security Assertion Markup Language) protocol:

For compatibility with other IdPs, please contact our support team.

Setup Procedure

If you wish to use this feature, please contact our support team first.

1. Autify provides all required information

Autify will provide you with the Identifier and the Reply URL so you can set them up on your IdP.

2. Send sign-in domain name and SAML connection metadata XML

Based on the information obtained in step 1, configure your IdP and then send the following information to Autify:

  • Login URL

  • Federation Metadata URL

  • Token Signing Certificate (in Base64 format)

3. Confirm login

Once our setup is complete, launch the Nexus application and confirm your login.


FAQ

If SSO is enabled, will username/password login be disabled?

Yes, when SSO login is enabled, login using a username/password is disabled.

Can multiple IdPs be configured for a single organization?

No, only one IdP is supported per organization.

How do I invite new users?

Please send invitations from the Settings > User Management screen. After the invitation, an email will be sent to the user. The user will log in to the application using the Server URL provided in the email.

If users try to login with SSO before their account is created by an administrator, the login will fail.

Can alias email addresses be used?

No, alias email addresses cannot be used with SSO.

Is it possible to have a mix of users who use SSO and users who do not use SSO within a single organization?

No, since the SSO setting is configured at the organization level, it is not possible to have a mix of SSO users and non-SSO users within the same organization.