Skip to main content
This page describes SSO for the TechWolf Console. It does not apply to API authentication. For API access, see Authentication in the Tutorials. With Single Sign-On (SSO), your employees can log in to the TechWolf Console using your company’s existing identity provider (IdP) instead of separate credentials. This simplifies access management and aligns with your existing security policies. Use this page as your reference while setting up and reviewing the connection. It lists the supported providers, the exact values your IdP admin needs (ACS URL, entity ID, application URL, attributes), and the answers to the questions that usually come up during setup and security review, so you can configure SSO and clear your security review without contacting us.

Supported SSO Providers

TechWolf supports the following SSO providers for the TechWolf console:

How your values are built

Every value below is derived from three things: your tenant name (e.g. acme), your region, and the environment (production or staging). The table below shows the region-specific building blocks; the sections that follow plug these into each field.

Setting up the connection (for your IdP / IT admin)

The application URL is the URL of your Console. Some IdPs label this field “sign-in URL”; it is the same value.

Required attributes

We use email to link the SSO user to their Console account, so it must be present. username is optional and can be any format.

Additional SAML settings

  • Login type: SP-initiated only (IdP-initiated is not supported).
  • Request signing: supported. Algorithm RSA-SHA256, digest SHA256, binding HTTP-POST.
  • Signing certificate: X.509 (.pem or .cer).

Security and architecture review

User provisioning and access

Next Steps

To set up SSO for your organisation, follow the steps on the user management page of the Console or contact your TechWolf account manager or support@techwolf.ai. You can only set up one SSO connection per Console.