INTEGRATIONS & API
Set up single sign-on (SSO) with Apus ID
SSO lets employees sign in to Apus with their existing corporate identity. Apus ID supports OpenID Connect to connect your identity provider.
How SSO works
Identity across the Apus ecosystem is managed by Apus ID. With SSO, authentication is delegated to your organization's identity provider — employees don't have to remember another password.
Connect your identity provider
- Prepare the OpenID Connect details from your identity provider.
- In the Apus Account Console, add an SSO configuration and paste in the details.
- Test with a single account before enabling it for the whole organization.
Map users
Map attributes from your identity provider (email, groups) to Apus users and roles. Once enabled, granting and revoking access can follow the groups in your identity system.
TIP
Keep one admin account that signs in with a password + MFA as a fallback, in case your identity provider has an outage.
Was this article helpful?