Restrict project login to specific identity provider categories defined in Reunite. This configuration determines which IdPs are available for logging in to a project. Configuring SSO by itself does not require users to log in to access a project. To require login to a project, rbac or requiresLogin must also be configured.
| Option | Type | Description |
|---|---|---|
sso | [string] | List of identity provider categories from Reunite. Possible values: To target a specific identity provider by its unique ID, use Default value: |
The recommended way to configure sso is within the access object:
access:
sso:
- GUEST
- REDOCLYThe following example disables SSO using the access object:
access:
sso: []After applying this configuration, if you have rbac configured for the same project, and there are pages assigned to the authenticated default team, those pages are not accessible to anyone. Otherwise, if you do not have rbac configured, or you have all pages assigned to the anonymous default team, all pages are accessible.
Root-level sso configuration displays warnings when the access object is present. Migrate to the access object format.
sso:
- GUEST
- REDOCLY- Access configuration - Group authentication and access settings together using the
accessobject - RBAC configuration - Complete options for configuring role-based access control for granular project permissions and user management
- RequiresLogin configuration - Require login for all users to your project without implementing complex role-based access control
- Google Workspace SAML 2 SSO - Integrate Google Workspace SAML 2 SSO with Reunite for enterprise authentication workflows
- Single Sign-on concepts - Understand different identity provider categories in Reunite and how they apply to project authentication
- Add an identity provider - Follow steps to add identity providers in Reunite for centralized authentication management
- Configure SSO - Enable multiple identity provider categories to give users flexible authentication options for your projects
- Role-based access control (RBAC) - Implement advanced access control scenarios to grant specific users access to specific content and features