Single Sign-On
Single sign-on lets a member sign in with the organisation's own authenticator instead of an Engage password. It is switched on for the organisation as a whole, and can then be narrowed to a chosen set of members.
Before you begin
- You are the organisation's owner. The Enable SSO switch is shown only to the owner; other administrators can customise access once it is on.
- The organisation's identity provider is set up to accept Engage. This page turns SSO on and decides who uses it; it does not configure the provider.
Open the SSO page
Select Settings > SSO. The page is titled Single Sign-On (SSO).
Enable or disable SSO
- Switch Enable SSO on or off.
- In the Confirm SSO Enable/Disable dialog, which asks Are you sure you want to enable or disable SSO?, select Confirm.
Engage confirms with SSO has been enabled for your organization or the disabled equivalent.
Limit SSO to chosen members
With SSO enabled, a second section appears.
- Switch Customise SSO Access on.
- In the Confirm SSO Customization dialog, which asks Are you sure you want to customize SSO access?, select Confirm. Engage confirms with Customize SSO access has been enabled for user.
- In the Members list that appears, switch Enable SSO Login on for each member who should sign in through SSO. Search members filters the list by name. The list shows only members whose email domain matches yours, and your own row's switch is disabled.
- Select Save. Save stays disabled until at least one switch has changed, and Cancel reverts unsaved changes.
Engage confirms with Custom SSO access changed..
Switch Customise SSO Access off to return to SSO for every member.
How you know it worked
Enable SSO shows on, and members sign in through the identity provider on their next sign-in. With customisation on, only members whose Enable SSO Login switch is on are offered SSO.
When it does not work
| Symptom | Cause | What to do |
|---|---|---|
| Enable SSO is not shown | You are not the organisation owner | Ask the owner to enable SSO |
| A member is missing from Members list | Their email domain differs from yours | Only members on the organisation's domain can be given customised SSO access |
| Save stays disabled | No switch has been changed since the last save | Change a switch, or nothing needs saving |
| Your own switch is disabled | Engage prevents you from changing your own SSO access | Ask another administrator |
Next steps
Members who sign in with a password can also register a passkey: Your profile.