Frequently Asked Questions about single sign-on
What is SSO?
SSO (Single sign-on) is a sign-in method that allows a user to log into one application and access all of their accounts from one place.
How do I set up SSO?
What Identity Providers does Guru integrate with?
Guru can integrate with any Identity Provider that supports SAML 2.0. In the past, we have worked with:
How do users log into Guru after SSO is enabled?
Once you've turned on SSO for your team, Guru users can only log in through the Identity Provider. Admins can always log into Guru via username and password as a failsafe.
When a team has SSO setup within Guru, access to Guru is granted through their SSO Provider and not through Guru anymore. A user won't be able to "join the team" through regular registration/domain discovery when a team is using SSO.
What happens to users who are logged into Guru before SSO is enabled?
If a user is logged in to Guru before SSO is enabled, they will not be automatically logged out, but will have to login through the Identity Provider upon their next login.
If a user's session times out, Guru will direct the user back to the Identity Provider to re-authenticate. If the user logs out of Guru, the user will have to log into Guru via the Identity Provider.
What is the difference between SSO and Domain Discovery?
Domain Discovery is a setting in Guru that allows anyone with a specific email domain name to automatically join your Guru team.
SSO enables users to securely authenticate with multiple applications and websites by logging in only once with one set of credentials (username and password) through a third party Identity Provider (such as Okta, OneLogin, etc.).
Does Guru support SCIM?