Software Secure Access
Activity Manage

Cisco Secure Access Help Manage User Authentication Profiles Add SSO Authentication Profiles

Last updated: Aug 20, 2025

Add SSO Authentication Profiles

Add an SSO authentication profile for the integration of a user authentication IdP in Secure Access.

After you provision users and groups in Cisco Secure Access with a provisioning identity provider (IdP), you can configure the integration of a single sign-on (SSO) authentication identity provider (IdP). Secure Access supports Security Assertion Markup Language (SAML) and OpenID Connect (OIDC) to authenticate users.

When you add an SSO authentication profile in Secure Access, you must assign one of the user directories (integrated cloud provisioning IdPs) with the profile. You can associate a user directory that is not already assigned to an SSO authentication profile. For more information, see Manage User Directories.

This guide describes how to add SSO authentication profiles for the integration of user authentication IdPs in Secure Access.

Before you begin

Procedure

1

Navigate to Connect > Users and User Groups, and then click Configuration management.

2

Navigate to SSO authentication, and then click Add SSO authentication.

3

For SSO Authentication Name, enter a unique name for the SSO authentication profile.

4

For Authentication Method, click Security Assertion Markup Language (SAML) or OpenID Connect (OIDC).

5

For User Directory, choose the directory for the cloud IdP that provisions the users and groups.

6

Click Next.

7

For IdP Authentication, follow the steps in the OIDC or SAML configuration guides to complete the integration of the SSO authentication IdP.

8

Click Done.