Skip to main content
With Single Sign-On (SSO), users sign in through your Identity Provider and receive their Dashboard Roles from their IdP groups, instead of being invited individually. You can also use SCIM to keep users in sync and automatically deprovision them.
Interested in using SSO? Paxos supports SAML and OIDC Identity Providers. Contact Support to get started.
An Entity Manager uses the Role Mapping interface to map Roles to user groups within your organization’s Identity Provider (e.g., Okta, Azure AD). Typically, you work with your IT team to leverage existing groups; however, you may need to add new Identity Provider groups to match your expected Dashboard workflows. Once you map the group to an existing Dashboard Role, the next time users sign in with SSO their permissions will update.

Map Groups to Roles

Follow these steps to map Identity Provider groups to Paxos Dashboard Roles:
  1. Go to Admin > Team Management > Mapping.
  2. Click Add Mapping.
  3. Enter the Group Name exactly as it appears inside your Identity Provider’s configuration.
  4. Enter one or more Roles to associate with this Group.
Any user with a user attribute that contains the Group will automatically be assigned the associated Role on login.