Skip to content

Commit 0ba4591

Browse files
Merge pull request #1641 from codatio/ATH-429-updating-sso-user-management
ATH-429 Updating user management section
2 parents 93e3619 + 4f2759d commit 0ba4591

File tree

1 file changed

+14
-4
lines changed
  • docs/enterprise/tech-overview/security

1 file changed

+14
-4
lines changed

docs/enterprise/tech-overview/security/sso.md

Lines changed: 14 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ description: "Learn about the prerequisites for setting up enterprise SSO"
88
If you wish to use enterprise SSO but don't already have it enabled, please speak with your Account Manager first.
99
:::
1010

11-
Before performing any setup on your side, please fill out the questionaire below and share the answers with your Account Manager.
11+
Before performing any setup on your side, please fill out the questionnaire below and share the answers with your Account Manager.
1212

1313
### Customer questionnaire
1414

@@ -70,11 +70,21 @@ Note: to help maintain best in class security we support SP-Initiated and not Id
7070
on [IdP-Initiated Risks and considerations](https://auth0.com/docs/authenticate/protocols/saml/saml-sso-integrations/identity-provider-initiated-single-sign-on#risks-and-considerations)
7171
for more information on this.
7272

73-
### Add a new user
73+
### User management
7474

75-
Instead of using our Users section in the Codat Portal, you need to add a new user in your IdP to one of the groups you set up above. Once this is done, they can use the login URL provided and will be added to your Codat instance.
75+
While using SSO, you will no longer use the `Users` page within the Codat Portal to manage user. Instead this will be done within your identity provider.
7676

77-
Similarly, to remove a user, remove them from the group in your IdP.
77+
#### Add a new user
78+
79+
The adding of a user is done through adding them to one (or many) of the groups supplied as part of setup. Note - users will assume the highest level of privilege when added to multiple groups.
80+
81+
After a user has been added to the relevant group within your identity provider, they can use the login URL provided and will be added to your Codat instance.
82+
83+
#### Removing a user
84+
85+
Preventing a user from accessing the Codat Portal can be done through:
86+
- Removal from all specified access groups in your identity provider.
87+
- Prevention of authentication via your identity provider.
7888

7989
### FAQ
8090

0 commit comments

Comments
 (0)