Single sign-on
Let people sign in with your company's identity provider over OpenID Connect. Verify your email domains so that only your provider can sign in people with those addresses.
Identity provider
Not set up- Microsoft Entra ID
- Okta
- Google Workspace
- OneLogin
- JumpCloud
- Any OpenID Connect provider
Redirect URIs
Register both in your provider's app settings (the second is for the owner console).
Email domains
Prove you own a domain with a DNS TXT record. Only then does "Sign in with SSO" route its addresses to your provider, and only your provider can sign them in.