Single Sign-On
Single Sign-On (SSO) lets clients access Vendasta products using your organization's logins. SSO is available for partners on Premium or Custom subscriptions. Configure it from Partner Center → Administration → Advanced → Single Sign-On.
Vendasta maintains a current SOC 2® Type 2 report covering its security controls. For details on how authentication and access are secured, see Security and privacy or visit the Vendasta Trust Center.
What SSO is
SSO lets your clients log into Vendasta products using your organization's own login credentials and identity provider, instead of a separate Vendasta username and password. You connect your identity provider once, and your clients sign in through your own custom login screen.
Supported identity providers
SSO supports any identity provider that implements the standard OAuth2 or OpenID Connect (OIDC) authentication flows. There's no fixed list of named providers: if your identity provider supports either standard, you can connect it.
How to set up SSO
-
Go to
Partner Center→Administration→Advanced→Single Sign-On, then openPartner SSO Integration. -
In your identity provider, create a new OAuth2 Client to represent the Vendasta Platform. Note the
Client IDandClient Secret. When prompted for a redirect URL, enter:https://sso-api-prod.apigateway.co/oauth2/callbackThis same URI must also be added to your identity provider's list of authorized redirect URIs.
-
In the Vendasta form, enter the
OAuth2 Client IDandOAuth2 Client Secretfrom step 2. -
Set
Integration Typeto match what your identity provider supports:OpenID Connect DiscoveryOAuth2
-
Enter your identity provider's endpoints:
- For
OpenID Connect Discovery: theDiscovery Endpoint - For
OAuth2: theAuthorization,Token, andUser Infoendpoints
- For
-
Click
Createto enable the integration.
Documentation and support
If you run into login or session issues after setup, contact the support team or your Vendasta representative.