Single sign-on - User Guide - BlueCat Horizon

BlueCat Horizon User Guide

ft:locale
en-US
Product name
BlueCat Horizon

BlueCat Horizon supports SAML-based single sign-on (SSO), allowing administrators to configure the platform to redirect users to their own identity provider for authentication. With SAML, you can configure SSO using your identity provider of choice from the following available options:

  • Microsoft Entra ID (formerly Azure AD)
  • Okta
  • Google Workspace
  • OneLogin
  • And any other other identity provider that supports SAML 2.0

If single sign-on is set up, an option to Continue with SAML is displayed on the login screen. External users can select this open to log in with SSO.


The BlueCat Horizon login page. The Continue with SAML option is displayed and highlighted.

Once logged in and authenticated with SSO, the external identity provider provides the platform with necessary details about the user, such as their group membership, enabling the platform to determine what the user is authorized to access.

Note: Access permissions for external users are provided through group assignments that need to be configured through your identity provider. For instructions, refer to Configuring groups and roles for external users.

For instructions on how to set up single sign-on, refer to Setting up and managing single sign-on.