Streamlining Access: A Guide to Single Sign-On Implementation

September 26th, 2025

Knowledge

Virbela can connect to your company's Single Sign-On (SSO) system. This will eliminate the need for your users to remember a separate Virbela password, making the login process simpler and more secure.

 

Preparing for SSO

Before you send us a request to set up SSO, we would like to provide you with some critical information. Firstly, your company must already have an SSO setup configured. Virbela cannot create an SSO configuration for you, but we are happy to help you connect an existing SSO to Virbela.

Additionally, specific SSO setup configurations may require changes on your end. Virbela cannot perform these changes on your behalf, but we are always ready to assist you. We may also need to speak with the team responsible for the technical management of your SSO configuration.

Please remember that the SSO setup between Virbela and your company is simply a link and not a federation. This means that when a user signs in through SSO, the SSO only checks that the user's credentials are correct and still active. It then passes a confirmation message back to Virbela, indicating that the user's credentials are valid.

 

Starting the SSO Setup Process

Please contact your account manager or submit a ticket to the help desk to initiate the SSO setup process. We will require two pieces of information from you to begin:

Which SSO provider(s) (e.g., Microsoft Azure, Okta) would you like to set up?

What protocols (SAML or OIDC/OAuth2) does your company support, and do you have a preference?

Once we receive this information, we can begin our work. The choice of the protocol will determine which workstream Virbela will take.

We understand that you may prefer to use your test credentials first to ensure the connection works before completing the setup with production credentials. We fully support this process and are ready to assist you at every step.

If you want to use SAML, we will take the first step and provide you with Virbela's identifier and reply URL. You will then need to provide attribution mappings and a URL to the metadata file. These steps will take place regardless of the provider, and you or we may require additional information in some setups.

If you are using OIDC or OAuth2, we will require you to send us information and perform configurations on your side before we can begin our work. This step varies significantly by the provider, and we will share those details with you upon receiving your initial SSO setup request.

Once the configurations are set up in our system and yours, we will perform our testing. However, we highly recommend you provide us with your test credentials to ensure a successful authentication process. If not, you will have to perform the final test on your end to ensure your users are authenticated and can access the Virbela campus.

 

What does Virbela Have Access To?

Please remember that we will not have access to any information beyond authentication and basic user information. We are unaware of a user's employment information or when an employee is off-boarded. If an employee is off-boarded, their SSO credentials will cease to work, and the user cannot log in through SSO. However, the user remains an active campus member unless someone manually turns it off. We offer additional APIs to connect your employee management system to Virbela, so please do not hesitate to contact your account manager for more information.