Skip to main content
Self-hosted Enterprise unlocks advanced SSO features for teams that need centralized identity management beyond the Community self-hosted limits.
OIDC SSO is available on self-hosted Community instances without an Enterprise license, but the instance remains limited to 2 users total. Enterprise is required to add more than 2 users and to use SAML or LDAP SSO.

What this unlocks

Enterprise SSO covers:
  • SAML SSO
  • LDAP SSO
  • More than 2 self-hosted users when using OIDC provisioning
OIDC configuration is documented in detail and can be used on Community self-hosted instances within the 2-user limit. SAML and LDAP availability depends on the Enterprise features enabled for your installation.

Before you start

Make sure you have:
  • An active self-hosted Enterprise license with SSO enabled for SAML or LDAP
  • Workspace admin access
  • Identity provider credentials and allowed redirect URI configuration

Configure OIDC SSO

See OIDC SSO Configuration for provider setup, redirect URI behavior, field mappings, group-to-role mappings, and force login mode.