Allow external users and groups to bypass single sign-on
Administrators can allow users and groups to bypass the Single Sign-on Authentication screen in Administration. Those users can sign in to ONESOURCE directly without using single sign-on (SSO).
- Bypass single-sign onnoteTo bypass single sign-on, the account owners must first contact ONESOURCE Support to set up a trust relationship between the 2 accounts.
- Sign in to ONESOURCE, then selectAdministration.
- SelectSetup, thenSingle Sign-On Authentication.
- To turn this option On, selectSingle Sign-On Authentication.
- Single Sign-On Authentication ON/OFF:If turned On, users have the capability to sign in directly. For those who don’t, they must go through the SSO URL.
- Require Single Sign-On Authentication to log in ON/OFF:If turned On, all users in the database must go through SSO; this makes SSO necessary for all users.
- Client Network Authentication URL:Enter your company network URL in the field. You will be the company URL to sign in – if either of the buttons is turned on, you must have a URL. If you turn the buttons off, the URL won’t work.
- Exclude groups from single sign-onThis area enables administrators to control which users can bypass a company’s single sign-on requirement and log directly into ONESOURCE using the onesourcetax.com URL.
- On the Single Sign-On Authentication screen, scroll down to the Single Sign-On Exemptions section.
- Mark the groups and selectTransferto move them to the Selected Groups list (single sign-on exemption).
- Example: To exclude ‘Administrator’ group, transfer that group to the Selected Groups list.
- Select theUserstab to see the list of users who are exempt from single sign-on.