Haystack supports authenticating users using Single Sign On (SSO) with Microsoft, Apple and Google.
If you're an Enterprise client, Haystack's support of SSO may differ from other SSO implementations you've used in the past. This is due to specific requirements that satisfy various Privacy regulations around the world (such as GDPR).
In Haystack's implementation, there are two parts:
Authenticating with SSO as a Microsoft Entra ID (Azure AD) client
Setting up MS Entra ID (Azure AD) integration with Haystack
Here is a diagram of how both the Azure AD integration and the SSO authentication works:
This article explains how SSO is achieved when the enterprise is using Azure AD (the first point). If you're looking for information about the second point, Haystack's integration with Azure AD, please read this article about Azure AD integration.
To turn on the ability to authenticate your users using Azure AD's SSO credentials, all your Azure AD Admin needs to do is:
Download the free Haystack app from the App Store or Google Play Store
Choose "sign in with Microsoft"
Enter their work email
"Accept" the permissions (only Azure AD Admins will be able to do so)
And that's it! Haystack will be added automatically as an Enterprise App in your Azure AD Portal.
For more information, please reach out to your Account Manager.