Skip to content

SSO / SAML

Let people sign in to RezolveIT with your organization’s identity provider — Okta, Entra ID, Google Workspace and any SAML 2.0 IdP.

RezolveIT acts as a SAML service provider. On sign-in, users are redirected to your IdP, authenticate there, and return with a signed assertion. No passwords are stored in RezolveIT.

  1. In your IdP, create a SAML app for RezolveIT and note the metadata URL.
  2. In the Admin area → Security → SSO, paste the IdP metadata and download the SP metadata for your IdP.
  3. Map IdP attributes to user fields (email, name, department).

Map IdP groups to RezolveIT roles so access is provisioned automatically — a user in your IT-ServiceDesk group gets the service desk role on first sign-in, and loses it when removed upstream.

New users can be created on first successful sign-in, so you don’t pre-load accounts. See Security & compliance for enterprise controls.