Enterprise Single Sign-On with Agility

While more organizations are moving towards remote work, managing authorization has become one of the top requirements for SaaS platforms.

Agility uses Auth0 as our authentication provider. Depending on how your organization works, you can easily match up your security requirements with our platform.

Enterprise SSO is the most secure authentication because your organization controls it. Your employees won't have to remember another username and password, and you won't have to worry about security with an external platform.

This saves time and reduces stress for your employees. It is also much more secure, as any rules you've set up as part of your security and compliance posture will automatically be enforced when you use SSO with Agility.

Your users will authenticate with your organization's gateway, and then Agility will communicate securely with your systems to confirm the user's identity. Many companies refer to enterprise SSO as federated identities or enterprise federation. What this means is that you don't have to worry about duplicated users across all of your systems.

Agility provides enterprise SSO to Active Directory, LDAP, ADFS,  OpenID Connect (OIDC)SAMLWS-Federation, and more. If you're currently using one of those protocols, or if you're using the following systems, you can configure enterprise SSO with Agility:

  1. Microsoft Entra ID (Azure Active Directory)
  2. Google Workspace
  3. OneLogin
  4. Okta
  5. PingFederate
  6. Salesforce
  7. SiteMinder
  8. SSOCircle

Note

Enterprise SSO is only available on Enterprise plans.

Microsoft/Entra/Azure AD Users can log in to Agility in one of two ways:

  • Username field on the login screen. 
    • Once your email is entered in the Username field, the password field will disappear and you can proceed to click the login button.
    • You will be directed to the Microsoft login page. From here enter your Azure AD SSO login and proceed as normal.
    • You are logged into Agility!
  •  Login with the Microsoft button
    • Pressing the "Sign in Microsoft" button takes you immediately to the Microsoft login page.
    • Here you are required to enter your UPN (User Principle Name) email address for social login.
      • Security Info: Microsoft Entra (previously Azure AD) allows administrators to use an email address that is different from their UPN, and through this functionality an attacker can spoof any email address they desire. To mitigate this security risk, Agility requires that users login using their UPN (User Principle Name) email address only.
    • This email may differ from the email address you had in Agility pre October 2025.
    • If you cannot see your Agility page, verify with your Agility Instance Admin that the email address has the necessary permissions in your Agility instance. This email is required for login using this method.
    • You are logged into Agility!

Here is a visual representation of this login process:

Direct Link to Agility via SSO

To connect directly to Agility using your SSO Connection, use the following URL: http://manager.agilitycms.com/login?connection=[connection-name]

The connection-name will be provided to you by our team. This ensures that your users are taken directly to your organization's login screen directly.