> ## Documentation Index
> Fetch the complete documentation index at: https://docs.paxos.com/llms.txt
> Use this file to discover all available pages before exploring further.

# SSO Access

> Grant Dashboard access through your Identity Provider with SSO and role mapping.

With Single Sign-On (SSO), users sign in through your Identity Provider and receive their Dashboard Roles from their IdP groups, instead of being invited individually. You can also use [SCIM](/guides/dashboard/admin/scim-provisioning) to keep users in sync and automatically deprovision them.

<Tip>
  Interested in using SSO? Paxos supports SAML and OIDC Identity Providers. Contact [Support](https://support.paxos.com) to get started.
</Tip>

An Entity Manager uses the [Role Mapping interface](https://dashboard.paxos.com/admin/team-management/mapping) to map Roles to user groups within your organization's Identity Provider (e.g., Okta, Azure AD).

Typically, you work with your IT team to leverage existing groups; however, you may need to add new Identity Provider groups to match your expected Dashboard workflows.
Once you map the group to an existing [Dashboard Role](/guides/dashboard/roles), the next time users [sign in with SSO](/guides/dashboard/signin#sso) their permissions will update.

## Map Groups to Roles

Follow these steps to map Identity Provider groups to Paxos Dashboard Roles:

1. Go to [**Admin > Team Management > Mapping**](https://dashboard.paxos.com/admin/team-management/mapping).
2. Click **Add Mapping**.
3. Enter the Group Name exactly as it appears inside your Identity Provider's configuration.
4. Enter one or more Roles to associate with this Group.

Any user with a user attribute that contains the Group will automatically be assigned the associated Role on login.
