Single sign-on (SSO)

With SAML 2.0 Single Sign-On (SSO), you can set up access to Yandex 360 services via your identity management system, such as Active Directory or Keycloak. This way, employees don't have to remember a new username and password, and you don't have to create separate accounts for them in Yandex 360 for Business.

When an employee tries to log in to any of the services, Yandex 360 as a service provider redirects them to the login page you specified, and they can authenticate using the credentials stored by the identity provider. This solution is called identity federation.

How to connect an identity provider

Connect identity federation to Yandex 360. Follow the guide for your identity management system: Active Directory, Azure Active Directory, Keycloak 18 or 19 and above.

Sync users and groups with the LDAP directory

Set up automatic syncing of users and groups with Active Directory.

Changing the identity provider (IdP)

Modify the SSO settings if you need to set up login via a different identity provider.

How to disable an exclusive address

Learn how to disable single sign-on (SSO) temporarily or permanently.