SSO & SAML
Single Sign-On (SSO) lets your team access Theneo through your identity provider, via SAML 2.0 or OIDC.
Supported identity providers
Theneo connects to any SAML 2.0 or OpenID Connect (OIDC) provider, including:
Microsoft Entra ID (Azure AD)
Full SAML/OIDC support, with a dedicated setup walkthrough.
Okta
Connect Okta as your SAML or OIDC identity provider.
Auth0
Use Auth0 to broker sign-in for your members.
Google Workspace
Let members sign in with their Google Workspace identity.
AWS Cognito, OneLogin, Ping, JumpCloud
And other enterprise IdPs via standard SAML/OIDC.
Any SAML 2.0 / OIDC provider
If your IdP speaks SAML 2.0 or OIDC, it works with Theneo.
Enable SSO
1
Open Workspace Security settings
As a Workspace Admin, go to Settings → Workspace and find the Single Sign-On section.
2
Choose your provider
Select your identity provider (or a generic SAML 2.0 / OIDC connection).
3
Exchange configuration
Provide Theneo's metadata to your IdP and enter your IdP's details (entity ID, SSO URL, certificate, or OIDC client credentials) in Theneo.
4
Test, then roll out
Verify a test sign-in, then enable SSO for your members. To require it for everyone, turn on SSO-Only enforcement.
Related
On this page
- SSO & SAML