Only workspace owners can manage SSO providers. Open Settings → SSO.
How it works
- An owner registers the IdP in Settings → SSO, supplying the IdP’s entry point, signing certificate, and the email domain to claim.
- The owner proves domain ownership by publishing a DNS
TXTrecord. - Netter generates service provider (SP) metadata to hand to your IT team, who registers Netter as an enterprise app on the IdP side.
- Once the domain is verified, anyone with an email at that domain is routed to your IdP at sign-in.
Register your identity provider
1
Open the SSO settings
Go to Settings → SSO and click Add IdP.
2
Fill in the IdP details
Copy these from your IdP’s SAML / federation metadata:
3
Register
Click Register IdP. The provider is created in a Domain unverified state and stays dormant until you verify ownership.
Verify your domain
Expand the provider in the list. Under Verify domain ownership you’ll see a DNS record to publish:
Publish the record with your DNS host, then click Verify domain. Once verified, the badge flips to Verified and users at that domain can sign in via SSO.
Hand the SP metadata to your IT team
Expand the provider and open Service provider metadata. Give your IT team either:- The full SP metadata XML (click Copy XML), or
- The ACS URL directly:
emailAddress NameID format. Most IdPs (Entra ID, Okta, Google Workspace) accept these defaults.