Settings/Authentication/SSO
Enterprise SSO
SAML 2.0, OpenID Connect, Entra ID, Okta, Google Workspace, OneLogin, Ping, Auth0, custom IdP.
Safe testing mode is recommended. Keep at least one emergency administrator recovery path so you cannot lock yourself out when enabling SSO enforcement.
Identity provider
Domain discovery & protocols
Group → role mapping
Map IdP groups to VoiceOps roles
VoiceOps-Admins→ admin
VoiceOps-Ops→ operations
VoiceOps-Dev→ developer
VoiceOps-QA→ qa_reviewer
Certificate rotation and multiple IdPs per organization are supported. Login events are written to the security audit log.