Enterprise SSO
Configure single sign-on and user provisioning for your organization.
Enterprise SSO lets your organization manage authentication and user provisioning centrally through your identity provider.
Available features
| Feature | Description |
|---|---|
| SAML SSO | Single sign-on using SAML 2.0 |
| SCIM Provisioning | Automatic user and group sync |
Plan requirements
Enterprise SSO features are available on Business, Professional, and Enterprise plans.
Supported identity providers
Doow works with any identity provider that supports SAML 2.0 and SCIM 2.0, including:
- Okta
- Azure Active Directory (Entra ID)
- Google Workspace
- OneLogin
- JumpCloud
- Ping Identity
- Any SAML 2.0 / SCIM 2.0 compatible provider
Getting started
-
Configure SAML SSO — Set up single sign-on so members authenticate through your identity provider. See SAML SSO.
-
Configure SCIM provisioning — Automate user creation, updates, and deactivation from your identity provider. See SCIM Provisioning.
Security considerations
- SAML assertions are validated using your IdP's signing certificate.
- SCIM requests are authenticated using a bearer token unique to your workspace.
- All SSO and provisioning traffic uses HTTPS.
- Administrator accounts retain fallback access when SAML is required.
Was this page helpful?