* policies * auto-scaling seats * pw reset * custom role collections permissions * automatic biometric prompt * web vault dark mode * custom field autofill article & section on <span>s * cli passphrase options * bye bye, business portal * release notes * merge latest from master * fix typo * redo timeout article * export policy - owner/admin exemption * biometric fix * sso faq item
2.5 KiB
layout, title, categories, featured, popular, tags, order, redirect_from
| layout | title | categories | featured | popular | tags | order | redirect_from | ||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| article | Using Login with SSO |
|
false | false |
|
04 |
|
As an end-user of Bitwarden, you will need to link your account to SSO and get your Organization identifier before you can login using SSO:
Link your Account
To link your account:
-
Open the Web Vault, navigate to your Settings tab and open your Organizations.
-
Hover over the desired Organization and select the {% icon fa-cog %} gear dropdown:
{%image /sso/sso-link-button-overlay.png Link SSO Dropdown Option %}
-
From the dropdown menu, select {% icon fa-link %} Link SSO.
Get your Organization Identifier
Every Bitwarden Organization has a unique identifier specifically for Login with SSO. You'll need this value to login, so ask your manager or Bitwarden administrator to retrieve it for you.
Login using SSO
To login to Bitwarden using SSO:
-
Open your Bitwarden Web Vault or App and select the Enterprise Single Sign-On button:
{% image sso/sso-button-lg.png Enterprise Single Sign-On button %}
-
Enter your Organization Identifier and select Log In:
{% image sso/org-id-input.png Organization Identifier field %}
{% callout success %}We recommend bookmarking this page with your Organization Identifier included as a query string so that you don't have to enter it each time, for example
https://vault.bitwarden.com/#/sso?identifier=YOUR-ORG-IDorhttps://your.domain.com/#/sso?identifier=YOUR-ORG-ID.{% endcallout %} -
Now that you've authenticated your identity using Login with SSO, enter your Master Password on the Login screen to decrypt your Vault.
{% callout success %} Why is my Master Password still required?
All Vault data, including credentials shared by your Organization, is kept by Bitwarden only in its encrypted form. This means that in order to use any of those credentials, you need a way to decrypt that data (we can't).
Your Master Password is the source of that decryption key. Even though you're authenticating (proving your identity) to Bitwarden using SSO, you still must use that decryption key (your Master Password) to see any meaningful data. {% endcallout %}