Add an SSO connection
Create an admin or end-user SSO connection in the Developer Console, paste the service-provider details into your identity provider, save its configuration, then activate it.
Create the connection
In the Developer Console, Tenant → Single Sign-On lists the Account's connections. Two kinds exist: admin SSO signs your own team in to Canopy, routed by the domains you verify on the Domains page; end-user SSO signs your application's users in, bound to an Environment. Single sign-on is a Pro feature; on a Free account the page says so and offers no create button.
- Application
- Developer Console
- Path
- TenantSingle Sign-On
- Opens with
sso.viewRead SSO connections, verified domains, the custom auth domain, and directory sync.
- Context
- Account-wide. No Application or Environment selection applies.
Create the connection
Configure, activate, disable, delete
The connection page holds the identity-provider side of the exchange, the Environment bindings for end-user SSO, and the email domains for admin SSO.
Configure, activate, disable, delete
If you don't see this
Each control on this page exists only for someone who may use it. When something described above is missing, one of these is why:
Tell us how we can improve this guide.