Skip to content

Enterprise SSO

Use your existing identity provider to control access to sslcertificates.io. SAML 2.0, OpenID Connect and SCIM provisioning are organization security features, not certificate integrations.

What this is

Enterprise SSO signs your teammates into sslcertificates.io with the identity provider you already operate. It does not issue or deploy certificates. Configure it from Organization → Security after you create an account on Scale, Business or Enterprise.

Protocols

SAML 2.0 and OpenID Connect are supported for sign-in. SCIM 2.0 provisions and deprovisions organization membership. You can use Microsoft Entra ID, Okta, Keycloak, or a generic SAML/OIDC application.

SSO enforcement

Owners can require SSO for the organization after a connection is tested. A break-glass owner login remains available so you are not locked out of a failed identity-provider change.