Skip to main content

Setting up SSO to Tatango with Enterprise Login

Learn how to set up Enterprise Login (SSO) with Tatango

Andrew Penchuk avatar
Written by Andrew Penchuk
Updated over 5 months ago

Enterprise Login

Enterprise Login enables you to access Tatango using Single Sign-On (SSO) through your organization's Identity Provider (IDP). This secure authentication method streamlines the login process and simplifies user access management for IT departments.

Part 1: Getting Started

Supported Identity Providers

Our SSO integration, powered by WorkOS, supports multiple identity providers including:

Prerequisites

Before starting the setup process, you will need:

  • Complete the purchase of Enterprise Login which is an add-on feature. Contact your Customer Success Manager for additional information including pricing details. Once purchased, your Tatango account will be provisioned with Enterprise Login and new configuration settings will become available under My Account > Account Settings > SSO for Owner roles to start the setup process.

  • Administrative access to your organization's Identity Provider (IdP).

Part 2: Implementation & Setup

Setup Process

Once Customer Success has confirmed your instance has been provisioned with Enterprise Login, an account Owner will need to navigate to My Account > Account Settings > SSO to begin the Setup Wizard.

The Setup Wizard will enable you to:

  1. Create your organization

  2. Select and configure your SSO provider

  3. Upload necessary authentication files and/or from your IdP

Technical Requirements

Depending on an organization’s integration selection, they may get asked the following questions. If so, use the following answers:

  • Do you support SAML 2.0?

    • “Yes”. Tatango supports SAML 2.0 for enterprise login through our integration with WorkOS. SAML 2.0 is a widely used protocol for Single Sign-On (SSO) that enables secure authentication and seamless access to our platform using your organization’s Identity Provider (IdP).

  • Number of sites / environments needing to be implemented:

    • 1 (production environment only)

  • What type of Login Integration does the application require (IdP or SP initiated):

    • Tatango supports both options however “SP-Initiated” is recommended.

  • SP Start URL: The application's login URL. This value enables appropriate redirection for normal login and SSO login experiences.

  • All other questions: Customers will need to consult their IT department to answer the remaining questions because they are specific to the setup that they have to initiate.

Important Changes

Once SSO is enabled:

  • All users must access Tatango via https://app.tatango.com/login/sso or click on the “Log in with your org” button on the main login page.

  • The standard login page will no longer work to log in for that organization.

  • Two-factor authentication (2FA) is handled by your identity provider.

  • Features requiring verification will use email-based one-time codes.

  • Any new user logging in for the first time will be automatically created with a “Limited Manager” role.

Part 3: Management & Support

Managing SSO Settings

Account owners can access SSO management through:

  1. Log in to Tatango with an Owner account

  2. Navigate to My Account > Account Settings

  3. Click on the “SSO” tab

Available options include:

  • Pause SSO: Temporarily disable SSO and revert to traditional login

  • Re-enable SSO: Reactivate SSO after pausing

  • Set Up New SSO: Configure new SSO integration if needed

  • Manage user permissions for SSO-created accounts

Need Help?

If you encounter any issues:

  1. For organization-specific settings, consult your IT department

  2. For SSO configuration assistance, contact Tatango support

Note: Remember that SSO must be provisioned for your account before you can access these features. Contact your Customer Success team to begin the process.

Did this answer your question?