Single Sign-On (SSO)
Set up single sign-on so your team signs in with your identity provider with domain verification and role mapping.
By Taylor1 author7 articles
- Setting up and managing SSOHow to set up and manage Single Sign-On in ReFresh: verifying domains, adding and switching identity-provider connections, assigning roles, testing, and activating.
- Microsoft Entra IDConnect Microsoft Entra ID (formerly Azure AD) so your Microsoft 365 users sign in to ReFresh with their work accounts. ReFresh connects to Entra over OpenID Connect (OIDC).
- Google WorkspaceConnect Google Workspace so your team signs in to ReFresh with their Google accounts. ReFresh connects to Google over SAML 2.0.
- OktaConnect Okta so your workforce signs in to ReFresh with their Okta accounts. Okta supports both OpenID Connect (OIDC) and SAML; use OIDC unless you have a specific reason not…
- JumpCloudConnect JumpCloud so your directory users sign in to ReFresh with their JumpCloud accounts. JumpCloud supports both OpenID Connect (OIDC) and SAML; use OIDC unless you have a reason not…
- Other provider (SAML or OIDC)ReFresh works with any identity provider that supports OpenID Connect (OIDC) or SAML 2.0, including Ping Identity, OneLogin, Auth0, Keycloak, and AD FS. In the wizard, choose Other Provider, then…
- Troubleshooting SSO and loginFixes for the most common SSO and login problems in ReFresh, covering domain verification, connection setup, sign-in denials, and the exact error messages you might see.
