SSO & SCIM
For organizations that manage identity centrally, ArcGlass supports single sign-on and SCIM provisioning so authentication and member lifecycle are handled by your identity provider.
Single sign-on (SSO)
Connect ArcGlass to your IdP so members sign in with your organization's credentials and your policies (MFA, conditional access, session length) apply. ArcGlass supports SAML and OIDC providers such as Okta, Entra ID (Azure AD), and Google Workspace.
SCIM provisioning
With SCIM, members are provisioned and deprovisioned automatically from your directory: create a user in your IdP and they appear in ArcGlass with the mapped role; disable them and their access is revoked. Group-to-role mapping keeps roles in sync without manual administration.
Set up
SSO and SCIM are configured with your account team as part of an enterprise plan. Contact ArcGlass to start, and we will provide the metadata, ACS URLs, and SCIM token for your provider.