Skip to main content
About the Resource Center

FAQs: Single sign-on

How can I configure a single sign-on identity provider for a user who does not have an email address?

Genesys Cloud supports third-party identity providers for single sign-on integrations. For more information about configuring the user attributes for your identity provider, see Configure single sign-on identity provider without email address

Is it possible to log in with ID and password even if we configure SSO?

Yes, it is possible to log in with either the user ID and password or SSO, unless you configure Genesys Cloud to authenticate with SSO only. For more information, see Configure Genesys Cloud to authenticate with SSO only.

Can I integrate with multiple instances of the same IdP?

If you want two instances of the same IdP, use the generic provider in addition to the name brand provider. You can have a maximum of two instances of the same IdP. 

My single sign-on provider allows me to sign in, but I get an error from Genesys Cloud when it redirects back.

Ensure that the signing certificate published by the single sign-on provider is correctly registered with Genesys Cloud.

I click the redirect link, and it takes me to my single sign-on, but the single sign-on gives me an error.

Ensure that the relying party identifier is the correctly registered with the single sign-on provider and Genesys Cloud.

My Identity Provider is not listed among the supported single sign-on integrations. Does Genesys Cloud support it?

Yes, the generic identity provider configuration enables Genesys Cloud customers to integrate with most identity providers that support SAML 2.0.

Is it possible to use a single identity provider with multiple Genesys Cloud orgs?

The Identity Provider Name list on the Single Sign-On Customization screen, contains a set of the most common providers. All of the identity providers shown in the Identity Provider Name list allow you to add multiple Genesys Cloud orgs.

To use a single identity provider with multiple orgs, repeat the steps you followed when configuring your first single sign-on integration. As you do, make sure that there is a unique Relying Issuer URI for each one. This allows the identity provider to distinguish which organization initiated the request.

Note: If you are adding a new identity provider to the existing list, keep in mind that the ability to add multiple Genesys Cloud orgs may depend on the identity provider’s capabilities. So to be sure, contact your identity provider.

Can I use SAML to create a single sign-on integration to Genesys Cloud for my identity provider?

Yes. The generic identity provider configuration enables Genesys Cloud customers to integrate with most identity providers that support SAML 2.0. For more information, see Add a generic single sign-on provider.