07 / Secure

Enterprise SAML SSO, without a separate fee

Connect a SAML 2.0 identity provider through KEENLITY ID, verify company domains, and enforce the corporate sign-in path without buying a separate SSO add-on.

Armoury profile showing the KEENLITY ID identity and active sessions
Armoury profile showing the KEENLITY ID identity and active sessions

Secure company sign-in is a baseline control, not a premium feature to unlock later.

No extra feefor the SSO capability SAML 2.0SP-initiated sign-in Verifiedexact-domain enforcement

Enterprise identity as a baseline

Enforce company sign-in without turning identity into an add-on.

Keep authentication with the organization's SAML identity provider while KEENLITY ID handles verified domains, controlled enforcement, and lifecycle administration.

01

Keep your identity provider

Connect a SAML 2.0 IdP using permanent Service Provider values, with documented setup paths for Microsoft Entra and Google Workspace.

02

Test before enforcement

Verify the domain through DNS, configure the IdP and signing certificates, test the current revision, and preview the exact accounts affected.

03

Require the corporate path

Accounts on an enforced domain use the SAML-only policy before they can create KEENLITY sessions or OAuth credentials.

04

Operate identity with clear ownership

Identity Owner and Admin roles, audit events, account suspension and restoration, binding reset, recovery, and overlapping certificates support ongoing administration.

Controlled SAML activation

Verify, test, then enforce.

Domain ownership and the current IdP revision are proven before an Identity Owner confirms which accounts must use the corporate sign-in path.

01

Verify and configure

Verify each exact corporate domain and configure the IdP with the permanent KEENLITY ID Service Provider values.

02

Test the connection

Validate a signed SAML response against the current certificate revision and preview the accounts the policy will claim.

03

Enforce and maintain

An Identity Owner confirms SAML-only enforcement, then manages people, certificate rotation, audit history, suspension, and recovery.

Secure access without an SSO tax

Make secure sign-in part of the platform baseline

Your enterprise IdP remains the authentication authority while KEENLITY ID maintains a stable identity for Armoury, with centralized sign-in and lifecycle controls that do not require a separate SSO purchase.

Review plans and evaluation