> For the complete documentation index, see [llms.txt](https://docs.glue.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.glue.ai/for-admins/saml-sso.md).

# SAML SSO

Single Sign-on gives members access to Glue through an identity provider (IDP) of your choice.

## SSO Overview

Single Sign-On is only included in our Enterprise plan. If you are interested in upgrading, please reach out to <support@glue.ai>

## Set up SAML single sign-on

### Step 1: Enable SSO for your workspace

First, you'll need to enable SSO for your workspace. To do so, open your Glue Workspace settings page, and click the "Enable Single sign-on" button to enable SSO.

<figure><img src="https://22865677-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F5yStw8wuIeWBdGOh81bd%2Fuploads%2FQudiG1bxvfb0uWR1g8xA%2Fimage.png?alt=media&amp;token=7e4b946c-8a6b-4971-8301-95d7ec932b44" alt=""><figcaption></figcaption></figure>

### Step 2: Configure your identity provider for SAML

Once enabled, click the "Configure SSO" button to begin configuring your identity provider.

<figure><img src="https://22865677-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F5yStw8wuIeWBdGOh81bd%2Fuploads%2FPBFSATOE0FGaUSMJKnLi%2Fimage.png?alt=media&amp;token=4f6f1fcc-29c6-4722-bb51-8e835f445d97" alt=""><figcaption></figcaption></figure>

In this window, select your identity provider, and follow the instructions to set up the connection between your IDP and Glue. Each identity provider will have a different set of instructions — follow the detailed configuration steps in the opened window.

{% hint style="info" %}
Be sure to complete every configuration step before closing the window. If you accidentally close the window, click the "Manage SSO" button to configure the connection again.
{% endhint %}

<figure><img src="https://22865677-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F5yStw8wuIeWBdGOh81bd%2Fuploads%2FH4BLKcO9jUu4qVqJyXqo%2Fimage.png?alt=media&amp;token=4f749491-10c2-41bb-8114-bc79451e7af4" alt=""><figcaption></figcaption></figure>

### Step 3: Confirm Connection

Once connected, you should see a screen confirming the activated connection in both the window and in Glue.

<figure><img src="https://22865677-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F5yStw8wuIeWBdGOh81bd%2Fuploads%2FSrIcIkBWtghNHcc3xUZu%2Fimage.png?alt=media&amp;token=de7a3c73-fd4d-425a-8c3c-d77dd8f5e588" alt=""><figcaption></figcaption></figure>

If the connection was successful, you will see the Glue Setting status update to "SSO Configured", as seen below!

<figure><img src="https://22865677-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F5yStw8wuIeWBdGOh81bd%2Fuploads%2FBwSzNEwC3NuHlydmY47Z%2Fimage.png?alt=media&amp;token=ecb57c23-71b3-465e-bb4d-61c6c343612d" alt=""><figcaption></figcaption></figure>

## What to expect next

Once SSO is set up, users logging into Glue will be asked to log in via your IDP sign-in page before they can access Glue. If users are logging in for the first time, users will be prompted to set up their Glue profiles after authenticating.

{% hint style="info" %}
Note: To keep user management simple, Glue supports the SCIM provisioning standard.
{% endhint %}
