SSO is an enterprise-only feature that lets your team authenticate through your existing identity provider instead of managing separate Sulus credentials. Sulus works with any identity provider (IdP) that supports either of the following protocols:
- SAML 2.0
- OpenID Connect (OIDC)
This includes popular providers such as Google Workspace, Microsoft Entra ID (formerly Azure AD), and Okta. Once SSO is enabled for your organization, Sulus provides your IT administrator with a secure link to configure your identity provider's credentials in the SSO admin panel.
RBAC works alongside SSO — permissions remain managed within Sulus even when sign-in is handled by your IdP. Because Sulus does not support SCIM provisioning, users still create their own account and are then invited into your organization with a role, exactly as described above.
SSO is part of Sulus's enterprise plans, which can also include unlimited concurrency, higher rate limits, a HIPAA BAA, SOC 2 (Type II) certification, and SLA commitments. To enable SSO for your organization, contact the Sulus team at [email protected], since this is a manual, sales-assisted setup rather than a self-serve dashboard toggle.