Updated on 2026-05-18 GMT+08:00

Overview

When logging in to Workspace using Single Sign-On (SSO), Workspace functions as the Service Provider (SP), and the enterprise's identity management system functions as the Identity Provider (IdP). This section describes how to set up SAML 2.0-based SSO connecting Workspace and an enterprise IdP. Workspace trusts the IdP based on configured metadata, and the IdP allows users to log in to Workspace using SSO. With SAML 2.0 SSO, when an enterprise employee attempts to log in to the Workspace client, the system automatically redirects the user to the enterprise's trusted authentication platform for identity authentication.

There are two ways to set up SSO: