Custom Authentication | Admin Guide - Zoho Directory

Set up custom authentication for Zoho Directory

Prerequisites

Roles required to perform this action :

  • Organization Owner

  • Organization Admin

Set up custom authentication for Zoho Directory:

Custom authentication enables both SAML and JWT single sign-on (SSO) from your preferred identity providers (such as Okta or OneLogin) to Zoho Directory. You can set up custom authentication for a specific user group or all users in the organization. 
 
Zoho Directory provides the option of adding multiple IdPs and configuring them for certain users, while excluding others. When adding multiple IdPs, you can also reorder their priority, with the IdP at the top of the list getting applied to users first, and the other IdPs subsequently down the list.
 
Once custom authentication is configured, users can sign in without their Zoho Directory password. They will only need to enter their email address in Zoho Directory's sign-in page after which they will be automatically redirected to the Identity Provider (IdP) for authentication. Alternatively, they can also sign in to the IdP first and access Zoho Directory from there. Custom authentication can be used with any IdP that supports SAML or JWT.

To set up custom authentication for Zoho Directory:
  1.  Add an IdP.
  2. Open the IdP from the list, then click the SSO Configurations tab.
  3. Copy the ACS URL. You may need this to configure SSO at your IdP.
 To set up custom authentication with a specific IdP, go through our detailed help guide.