> For clean Markdown of any page, append .md to the page URL.
> For a complete documentation index, see https://docs.middesk.com/llms.txt.
> For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://docs.middesk.com/_mcp/server.

# Use single sign-on (SSO)

> Enable Single sign-on for your Middesk account to connect with popular identity providers.

Single sign-on (SSO) uses your existing, centralized identity provider (IdP) for user authentication to the Middesk Dashboard. Your admins no longer have to maintain access to Middesk, and your users have one fewer password to remember.

Middesk supports SSO over standard authentication protocols like SAML 2.0, OAuth 2.0, and OpenID Connect. This includes multiple common external identity providers such as:

* Microsoft Active Directory Federation Services
* Okta
* Ping Identity
* OneLogin
* Google
* And others

## Configure SSO

#### Navigate to team settings

Go to the [team settings page](https://app.middesk.com/settings/team) of the Dashboard.

#### Open SSO configuration

Under **Single Sign On**, click **Configure**.

#### Configure your SSO connection

In the resulting page that opens, configure your SSO connection.

There's a guided setup process to configure SSO for the most popular identity providers. For more advanced configurations, there are also buttons to configure a custom SAML or OpenID Connect integration.

![Select your IdP](/_fern-img/1cf88e4a608e7803cc30ee7b8b7e1b639138c1d678ac619ab207570a3df02c90.webp)

> **Tip**
>
> To demo the SSO configuration process, visit the [WorkOS Admin Portal demo](https://demo.workos.com/) and click **Single Sign-on** > **Configure**.

## Add new users with SSO

Manually add new users to your Middesk account using the **Add User** button on the Team Settings page of the Dashboard.
Invite new users by entering their email address and selecting a role.

Users receive an email inviting them to activate their Middesk account. If SSO is already configured, users skip the create password step of the new user flow and instead authenticate using your configured IdP.

> **Tip**
>
> Alternatively use Middesk's [Directory Sync](./directory-sync) capability to automatically sync your Middesk users with your IdP.

## Sign in using SSO

Once SSO is configured, users select **Sign in with SSO** on the sign-in page to access the Dashboard.

![Select Sign in with SSO](/_fern-img/2687f4fdf651d6d944fde565c11f3648c89bfd57d6981198a66bcd5e17102c36.webp)

On the following page, the user submits their email address. If the submitted email address matches an existing user on an account with SSO enabled, they're prompted to log in through the configured identity provider.

> **Get a demo**
>
> Contact your account manager or [contact sales](https://www.middesk.com/contact-sales) to inquire about access.