Granting SSO access to hosts with Identity Providers like Azure, Google Workspace, or OKTA

With SSH Professional, you can grant access to your hosts via Azure Active Directory (AZAD), Google Cloud Platform (GCP), and OKTA.

The following quickstart guides will assist you with configuring your Identity Provider to allow client/user access to registered SSH hosts using their Single Sign-On (SSO) service.

Using Single Sign-on for SSH is not available on the Free plan. You can access the feature with a Teams or Enterprise trial when you sign up.

Get Familiar with how Smallstep works with your IdP

Read our overview of how Single Sign-On for SSH works.

Pre-read our Access Control Guide to familiarize yourself with access control by Host Tags using Groups synchronized from your IDP.


Configure your IdP

Using the following quickstart guides for your specific Identity Provider (IDP)

Azure AD Quickstart Guide


If you have an identity provider not listed above, please contact support to determine if Smallstep supports it.