Introduction to Single Sign-On (SSO)

Table of Contents


Note: We recommend to use: Automatic setup of Single Sign-On, for the Single Sign-On setup.

Workspace 365/Office 365 administrators are able to enable Single Sign-On(SSO) for their Workspace 365 environment, which helps decreasing login procedures for Workspace users. There are two Single Sign-On options. 

  • Web Services Federation
  • oAuth2 (recommended)

SSO options

Web Services Federation

With Web Services Federation (WS-Federation or WS-Fed), you can set up a Federation with an ADFS and/or Azure. In this way the user does not directly sign in to Workspace 365 but via the federation application/server. In most cases this is Azure. This federation is based on the Web Services Federation protocol. For a detailed description about this protocol, click here.


OAuth2 is an open standard for authorization, commonly used as a way for internet users to log in to third-party websites using their Microsoft, Google, Facebook, etc. accounts without exposing their password. Generally, oAuth2 provides to clients "secure delegated access" to server resources on behalf of a resource owner.

For a detailed description about this protocol, click here.

With configuration of oAuth2 in Workspace 365, you can sign in to Workspace via your current federation and you are able to use MFA, also called 2 Factor Authentication (2FA) or Multi-factor Authentication (MFA). 



You can setup Single Sign-On in Workspace 365 manually or automatically. The automatic setup is recommended. Click here to find out how you set up oAuth2 using automatic configuration.

Back to top