Use Single Sign-On for Account Manager

Customers with identity management systems like Okta, OneLogin, Ping Identity, and Microsoft ADFS require their employees to authenticate to 8x8 apps using their company ID instead of an 8x8 username and password. In this release, we support SAML 2.0 & Google OAuth Federated Single Sign-On (SSO) for the following 8x8 applications that use the shared 8x8 login page:

With support for Federated SSO, users can log in to 8x8 applications through their company's identity management system.

Identity Mapping

Ideally, the system maps each company user to an 8x8 user via the 8x8 username. If your company's 8x8 usernames are not unique email addresses, you have to populate either of these new 8x8 user attributes via Account Manager:

Configure Federated Single Sign-On

Configuring access to 8x8 applications via federated SSO requires you to:

  1. Set up SAML in the company's identity management system: Not covered in this document, since the process varies with the identity management system adopted by your company, and is typically managed by its administrator.
    • For Okta: Search for 8x8 Inc in the Okta Application catalog and add it. Follow the SAML 2.0 setup instructions provided for 8x8 users with matching Okta usernames. For 8x8 users without matching Okta usernames, the Federated ID is populated as normal in Account Manager.
    • For OneLogin: Search for 8x8 in the OneLogin Application catalog. Under Configuration > Connectors, select Connector Version: SAML 2.0.
  2. Set up Single Sign-On in Account Manager: Set up by the Virtual Office administrator. The administrator must set up Single Sign-On and specify the identity provider used by the company.
  3. Define Federated ID or Google ID in User Profiles: This step is optional. If your company does not use unique email addresses for 8x8 usernames, then you must map Virtual Office users to their Federated ID (for SAML) or Google ID (for Google) in the list of user profiles.

Sign in Using Federated SSO

The sign-in process for 8x8 applications is similar whether it is authenticated via SAML or Google. The initial sign-in process takes users through the Virtual Office login page. Go to the 8x8 SSO login page, or launch the Virtual Office desktop app.

  1. In the login screen, click Use Single Sign On.

    The SSO login prompt opens.
  2. Enter your 8x8 username or company email for validation.
  3. Click Continue to view your SSO options.
  4. Click Log in using SAML to open your identity provider's login page.
    Click Log in using Google to open the Google login page.

    Note: Clicking Clear SSO Setting takes you back to the first login page.

  5. When prompted, click Allow to enable Adobe Flash Player settings to access your camera and/or microphone.

Concept Link IconSee Also