Enterprise SSOEnterprise

Your identity provider is the front door.

For organizations that require every sign-in to go through their own identity provider, CloudOptify supports federated Single Sign-On as part of an Enterprise deployment. Your IdP becomes the source of truth for authentication — established with you when your instance is set up.

Federated single sign-on

Members authenticate through your identity provider — your MFA, conditional access, and session policies apply.

Long-term identity federation

A durable trust between your IdP and your CloudOptify instance, configured at deployment.

Pairs with SCIM

Combine with SCIM provisioning so the same directory both creates the user and signs them in.

Set up with you

Configured during onboarding of your Enterprise instance — there is no self-service toggle, because it is tailored to your tenant.

How access works

Three ways people get in — pick what fits your plan

Manual invites ship on every plan. Automated directory provisioning is self-service on Business. Federated single sign-on is set up with your Enterprise instance.

Invite a teammateEvery paid plan · no setup
1Admin invitesEnter email, pick a role
2Email sentSecure invite link
3They acceptClick the link, sign in
4Member activeAccess at their role
SCIM provisioning & Entra syncBusinessSelf-service · no deployment changes
1Connect your IdPPaste the SCIM token
2Directory pushesSCIM 2.0, automatically
3CloudOptify provisionsCreate · update · deactivate
4Groups map to rolesYour Entra groups (BYOAG)
Federated single sign-onEnterpriseConfigured with your instance
1User opens CloudOptifyRedirected to your IdP
2Authenticate at your IdPYour MFA & policies apply
3Federated trustIdP vouches for the user
4Signed inNo separate password

See it on your numbers.

Early access — a new platform, onboarding teams now.