Docs/Administration/Sso

Single Sign-On (SSO)

Single Sign-On lets your team sign in to ANTS Platform with your corporate identity provider, so access follows your existing identity and offboarding processes.

ℹ

Enterprise feature. SSO is configured per organization, typically with help from your ANTS Platform contact for production tenants. Requires the Owner role.

What's supported

  • OAuth / OIDC / SAML identity providers.
  • Domain-based routing — users whose email is on your verified domain are routed to your organization's SSO and provisioned automatically.
  • Encrypted credentials — provider client secrets are stored encrypted.

Setting it up

  1. In your identity provider, register an application for ANTS Platform and note the issuer/metadata, client ID, and client secret (or SAML metadata).
  2. Provide these to ANTS Platform to configure SSO for your organization and the email domain(s) to route.
  3. Test sign-in with a pilot user, then roll out to the organization.
ℹ

For provisioning at scale, the platform also supports SCIM (user provisioning) via the public API — see the API Reference.

Next steps

© 2026 ANTS Platform, Inc.Docs v1.0 · Last updated June 2026