Skip to main content
Kosli supports signing in using your identity provider, via single sign-on (SSO). If you don’t use an identity provider, Magic Link is an alternative way to sign in.

Enabling single sign-on

When you are ready for your organization to access Kosli using single sign-on, your IT team will need to configure a new SSO connection. It’s done through a self-service setup wizard to make this as straightforward as possible. Your Kosli Customer Success representative will provide you with a custom direct link to your personalized SSO setup wizard.

Step by step

Before you begin, you will need access to your Identity Provider (IdP) — such as Azure Entra ID, Okta, or Google Workspace — with permissions to create or modify application registrations and SSO configurations.
1

Review current status

Open the link provided by Kosli. The wizard will display the current state of your SSO connection. If no connection exists yet, you’ll see an option to add one.
The SSO setup wizard welcome screen, showing an SSO Configuration card with an Add button, and grayed-out SSO Mapping and SSO Testing options under Advanced.
2

Select your identity provider

Click + Add, then select your IdP from the list (for example, Okta, Azure Entra ID, Keycloak, or Auth0). Select OIDC if there is a choice. The exception is Okta: its SCIM integration only works with a SAML connection, so select SAML if you use Okta and expect to add SCIM provisioning — choosing OIDC now means recreating the connection later.
The Identity Provider (IdP) Selection step of the wizard, with a search box and cards for OKTA, Azure Entra ID, Keycloak, and Auth0.
3

Configure the connection

The wizard will guide you through the setup process with screenshots specific to your IdP. You’ll be asked to copy and paste values between your IdP and the wizard. For an OIDC connection these are the Client ID and Client Secret from your IdP’s application registration; for a SAML connection the wizard asks for your IdP’s metadata instead.
Step 2 of 6 of the wizard, Identity Provider Information and User Attribute Mapping, with Client ID and Client Secret fields and a screenshot showing where to find those values in Okta.
4

Notify Kosli

Once you have completed the SSO configuration in the wizard, please let your Kosli Customer Success representative know. We will then switch your email domain to use SSO and confirm when the migration is complete.
Last modified on September 8, 2026