Skip to main content
Connect AI supports the following SSO providers. When you onboard with Connect AI, CData provides a self-service link that explains how to set up your SSO provider. Click the link to view FAQ/Troubleshooting information for each SSO provider. To enable SSO for your account, contact CData Support.

SSO User Provisioning (Without JIT)

SSO handles authentication only. Before a user can sign in via SSO, they must have a Connect AI account. Without JIT provisioning enabled, an Administrator must invite the user by email first. See Users for details.

JIT User Provisioning

JIT provisioning automatically creates a user account the first time someone successfully authenticates through SSO. The Connect AI Administrator does not have to invite the user manually. The new user receives the role that has been configured by the Administrator in the Settings page (the Security tab) by turning on Just-in-Time User Provisioning for the selected email domain and role.
JIT Provisioning
An Administrator or User Administrator can modify the roles and permissions later. See Permissions and Access Control for details on user roles and permissions.
Your account must already have SSO configured to enable JIT provisioning.
If the new user’s SSO login reaches the maximum number of seats, the user’s provisioning is denied. The Administrator receives an alert.