Skip to content
Help Center home
InboxAsk a human

How to set up SSO and SCIM across multiple workspaces

Plain can connect multiple workspaces to a single SSO and SCIM directory sync configuration. This lets an organization with several Plain workspaces manage authentication and user provisioning through one identity provider connection. It is not self-service: Plain support configures it for you.

What it does

  • One SSO connection authenticates users across all connected workspaces.
  • One SCIM directory provisions and deprovisions users into the right workspaces based on your identity provider group mappings.
  • Each workspace has its own roles, such as Admin, Support and Viewer, and you map your identity provider groups to them.

How to request it

Open a support thread with Plain and include:

  • The workspaces you want to connect.
  • Which identity provider you use, such as Okta, Azure AD or Google Workspace.

    Plain support will configure the connection and send you setup links for your identity provider.

Single workspace SSO

If you have only one workspace, configure SSO and directory sync in Settings, then SSO. The multi-workspace setup is only needed when connecting two or more workspaces.

Requirements

  • Available on the Frontier plan.
  • Admin access to your identity provider.