SSO Setup Guide
This guide explains how to enable Enterprise Single Sign-On (SSO) for your Rillet organization.
With SSO enabled, your team authenticates using your company’s identity provider (IdP), such as Okta, Microsoft Entra ID, Google, or any provider that supports SAML or OIDC.
Before You Begin
To ensure a smooth setup process, make sure you have the following:
An active Rillet account.
Organization admin permissions to enable Enterprise SSO.
Access to your company’s email domain and DNS records.
Create a second admin user with a different email domain to use as a backup.
Configure Enterprise SSO
Follow the steps below to configure SSO for your organization.
Navigate to Authentication Settings
Log in to your Rillet account.
Go to Organization Settings.

Select Members & Roles > Authentication.

You will see the Enterprise SSO section with an Inactive status. This is where you configure SSO.
Add Your Organization's Domain
Enter your organization’s email domain (for example,
myorganizationdomain.com) in the Relevant domains field.Click + Add.

This domain is associated with your SSO configuration. All users with email addresses under this domain are redirected to your identity provider when logging in.
You can add multiple domains if needed.
Verify Your Domain
After adding a domain, it appears with a Pending verification status.
Click Verify domains to start the verification process. You are redirected to the domain verification page.

Confirm your domain and click Continue.

Follow the on-screen instructions to verify ownership of your domain.
This process usually requires adding a DNS TXT record to your domain settings.

Enable Enterprise SSO
After your domain is verified, return to the Authentication settings page.
Click Enable Enterprise SSO to continue.

Configure Your Identity Provider
Select your identity provider and follow the setup instructions.
Note You must verify at least one domain before enabling SSO. If you see a warning message, complete domain verification first.
The setup wizard guides you through the connection process.
Copy the ACS URL and Entity ID from the setup wizard into your identity provider's configuration.
Download or copy the metadata (or IdP URL, certificate, and SSO URL) from your identity provider back into the wizard.
Complete the connection test.

Confirm SSO Is Active
After completing the setup, return to the Authentication settings page.
The Enterprise SSO section now shows an Active status. Your team can log in using your identity provider.

You can return to this page at any time to update your configuration or manage domains.
See Also
To learn more about configuring settings and managing users in Rillet, see the following articles:
Last updated