Skip to content
Web Design & Development

How to Get Single Sign-On for Business Apps Right

Letting people sign in to an application with their existing work identity, usually through SAML or OpenID Connect.

Marcus Adeyemi Technical Director 2 min read 25 views
How to Get Single Sign-On for Business Apps Right

What is at stake

Business customers expect single sign-on, and it centralizes access control when employees join or leave.

The playbook

  1. Support a standard protocol rather than custom integrations
  2. Test with more than one identity provider
  3. Handle account linking for existing users
  4. Plan deprovisioning as well as sign-in
  5. Document setup steps for customer administrators

Where it goes wrong

Avoid:

  • Custom authentication integrations per customer
  • Sign-in without a deprovisioning path
  • Assuming one identity provider's behavior is standard
  • Ignoring account linking conflicts
What to do and what to avoid with single sign-on for business apps, side by side
Good practice against the usual mistakes, from the sources listed below.

The numbers behind it

Published figures for Single Sign-On for Business Apps
MeasureFigure
ProtocolsSAML and OpenID Connect are the common standards
Identity providersorganizations use providers such as corporate directories
Just-in-time provisioningcreates accounts on first sign-in
Deprovisioningremoving access when people leave is the main security benefit

Getting outside help

When to hand it over: Bring in help when selling software to larger organizations.

Where this comes from

The figures and practices above come from the sources listed.

Working on something like this?

We take on Web Design & Development work for teams who want it done once, properly. Tell us what you are building and we will tell you honestly whether we are the right studio for it. Start a project.

Where to go next

Spotted something wrong? Report an error on this page. We correct on the page and say what changed.

All services

The work behind this article, and what it costs.

Marcus Adeyemi

Builds and maintains the web work. Writes about front-end architecture, performance, accessibility and the unglamorous parts of keeping a site alive.

Keep reading

More in Web Design & Development