Single Sign On (SSO)
What is single sign on?
Single Sign On (SSO) is a feature that allows end users to use their corporate credentials to sign into TrackVia. It means your users need to remember and manage one less password, and it gives administrators better access control to TrackVia.
Please contact the TrackVia Support team if you are interested in utilizing the SSO feature.
How does an Admin Setup SSO?
Super Admins can find the SSO setup page by
1. going to the user menu
2. and selecting My Account.
3. Here, you will see a tab labeled Single Sign On
This page provides what is needed on TrackVia's end to enable SSO -- you can download our metadata your Identity Provider requires, enter your Identity Provider Entity ID and upload their metadata. You will also find a couple of settings you will want to review:
1. Only Allow Single Sign On Authentication
2. Unknown users will be automatically added to TrackVia
👀 When setting up SSO using SAML, you will need to use this ACS URL: https://go.trackvia.com/saml/SSO
What’s the User Experience for End Users?
Users will need to access the account's TrackVia subdomain to utilize SSO.
👀 NOTE: If you've checked the box to "Only Allow Single Sign On Authentication", inviting a new user to your account will automatically add them to the account. However, the user will NOT receive an invitation email with a link to join your account, and so it's recommended that Admins direct new users to the correct subdomain to log in to TrackVia after they've been added to the account.
SSO FAQs
🧠QUESTION - How do new user profiles get created in TrackVia?
🎓ANSWER - A new user will be added in TrackVia when a new email address that isn't already associated with a user profile in TrackVia accesses your TrackVia account through the identity provider.
🧠QUESTION - Will enabling SSO have any impact on changing a user's status in TrackVia to "Inactive"?
🎓ANSWER - No, provisioning only works for creating new users. Users that are deactivated in the identity provider are not deactivated in TrackVia, and vis versa.
🧠QUESTION - If a person's name changes (i.e. due to marriage), will their TrackVia user profile be updated to reflect the name change?
🎓ANSWER - Yes, if the email address in TrackVia matches the email address of the user who accesses the account through the identity provider, then the name will be changed in TrackVia.
Identity Provider Documentation
Azure Active Directory integration with TrackVia
Okta integration with TrackVia
Comments
0 comments
Please sign in to leave a comment.