Connect an identity provider

You can connect an identity provider and configure single sign-on for your portal-only customers (Jira Service Management) when you subscribe to Atlassian Access. Read more about connecting an identity provider to customers.

Who can do this?
Role: Organization admin
Plan: Atlassian Access

Connect an identity provider for your users

Connect your identity provider to your Atlassian organization by configuring user provisioning and user authentication. You can choose to configure both user authentication and provisioning or to configure only one. It doesn’t matter the order you configure them in.

  • If you only set up user provisioning then your users can’t log in with single sign-on.

  • If you only set up single sign-on then you’re unable to deactivate users from your identity provider.

To connect an identity provider using SAML single sign-on:

  1. Go to admin.atlassian.com. Select your organization if you have more than one.

  2. Select Security > Identity providers.

  3. Select the Directory for your identity provider.

  4. Select set up SAML single sign-on.

  5. If you provision users with SAML Just-In-Time, select domains to link to the Directory.

  6. Save your SAML configuration.

Learn how to configure SAML single sign-on

To connect an identity provider using SCIM provisioning:

  1. Go to admin.atlassian.com. Select your organization if you have more than one.

  2. Select Security > Identity providers.

  3. Select the Directory for your identity provider.

  4. Set up SCIM configuration.

  5. Save your SCIM configuration.

Learn how to configure SCIM provisioning

To enforce single sign-on with Google Workspace:

  1. Go to admin.atlassian.com. Select your organization if you have more than one.

  2. Select Security > Authentication policies.

  3. Select Edit for the policy you want to enforce.

  4. Select Enforce single sign-on.

Learn how to set up Google Workspace

Additional Help