How to Setup SSO
Enterprise customers can configure Single Sign-On (SSO) for their Polycam workspace, allowing team members to sign in and have their accounts automatically provisioned using your organization's existing identity provider.
Plan Availability
| iOS | Web | Android | |
|---|---|---|---|
| Free | ❌ | ❌ | ❌ |
| Basic | ❌ | ❌ | ❌ |
| ProLEGACY | ❌ | ❌ | ❌ |
| Business | ❌ | ❌ | ❌ |
| Enterprise | ✅ | ✅ | ✅ |
What is SSO?
Single Sign-On (SSO) allows your team members to access Polycam using the same credentials they use for other tools in your organization, managed through your existing identity provider. Rather than maintaining a separate Polycam password, users can authenticate through your organization's identity provider.
Polycam supports SSO via both SAML and OIDC, which covers virtually any identity provider, including Okta, Microsoft Azure AD, Google Workspace, and others.
Before You Start
Before you can configure SSO for your workspace, make sure the following are in place:
- Your organization has an active Polycam Enterprise subscription with SSO enabled.
- You have administrator access to your organization's identity provider.
How to Set Up SSO
Once SSO is enabled on your account, you can configure it yourself through a guided, step-by-step workflow without needing to share any confidential information with Polycam or wait on us to complete the setup on your behalf.
1Navigate to Admin Settings
From your Polycam workspace, go to Settings in the left-hand navigation, and select Admin settings.
2Locate Single Sign On
Scroll down to the Single Sign On section. Here you'll see a Domain field where you can enter the email domain that should be covered by SSO (for example, yourcompany.com).
3Click Manage
Click to launch the guided configuration workflow. From here, you'll be walked through selecting your identity provider and entering the relevant configuration parameters.
4Confirm Attribute Mappings
As part of the setup, you'll be shown an attribute mapping table that defines how fields from your identity provider correspond to fields in Polycam. The following attributes are required:
| Attribute Name | IdP Field Name |
|---|---|
| firstName | firstName |
| idpId | NameID |
| lastName | lastName |
Confirm that these attributes are correctly mapped in your identity provider before completing setup.
Logging In With SSO
Once SSO is configured, your team members can log in to Polycam by navigating to poly.cam and entering their work email address. They will be redirected to your organization's identity provider to complete authentication, then returned to Polycam automatically.
Troubleshooting
A team member can't log in after SSO is enabled
Confirm that the team member's email address is associated with the domain covered by your SSO configuration and that they have an active account with your identity provider. If the issue persists, contact your Polycam account manager with the affected email address for investigation.
Users on a different email domain aren't being redirected to SSO
SSO is applied per email domain. If your organization uses multiple domains, confirm that all relevant domains have been included in your SSO configuration.
Requesting changes to your SSO configuration
If you need to update your identity provider, add additional domains, or make any other changes to your SSO setup, you can do this yourself by navigating to Settings Admin settings and clicking under the Single Sign On section. If you run into any issues, contact your Polycam account manager for support.