Onboarding Members Once SSO Has Been Enabled
This article covers the process of onboarding new members and existing members in your Organization once SSO has been enabled. Before reading on, be sure to review instructions and prerequisites for setting up SSO for your Organization.
- Inviting new members to your Organization with SSO Enabled
- Email Invites
- Invite Link & Linking Accounts
- Directly via the IdP
There are multiple ways to invite a new member to an Organization with SSO enabled.
Note: In all cases, you will need to make sure that your members have the proper assignments within your Identity Provider (IdP) and have access to the DataCamp application or else they will be blocked from accessing DataCamp.
You can continue inviting members via email from within the Members page of your Organization. Once the email invite has been sent to a member, they will receive an email with a link which redirects them to the Identity Provider (IdP) to sign in with their SSO credentials. If the login is successful, they will be redirected to DataCamp and have access to the Organization and premium content in DataCamp.
You can also invite members to your Organization by generating an invite link from within the Members page of your dashboard. If SSO is enabled, members who click on these invite links will be brought to the following page with an option to Link an Existing Account first or Create a New Account.
Members who already have a DataCamp account under a separate email address will have the opportunity to link their account so that they can continue their learning progress from where they left off.
In order to link their account, members will first need to sign in to DataCamp with their previous email and password. Afterwards, they will be redirected to the IdP Sign In page where they can log in with their SSO credentials. At this point, the account is linked and we’ve verified it’s the same member. Lastly, since the Organization has SSO enabled, the member will be logged out and asked to sign in once again with their SSO credentials to complete the process.
Alternatively, members can choose to create a new account if they don’t have a previous account to link or if they would prefer to create a new one. In this case, they will be immediately redirected to the IdP login page to sign in with SSO and will be redirected to DataCamp if the login is successful.
Members will also be able to add themselves to the Organization by first logging into your IdP, finding the DataCamp application and clicking the application to join.
What happens to existing Members in your Organization immediately after SSO is enabled?
If you have members in your Organization when SSO is enabled, they will immediately be logged out of DataCamp. They will receive an email (see below) explaining that the Organization has enabled SSO and that they will need to sign in again with their SSO credentials.
There is a link in the email which will redirect them to DataCamp’s sign-in page. On this page, they need to enter their email address and press Next. If this email is associated with a member who belongs to a group with SSO enabled, they will be redirected to the IdP login page to complete the sign in process. Here they will need to sign in with their SSO credentials. If this is successful, they will be redirected back to DataCamp with access to the platform.
Similarly, if a member is removed from the Organization or if SSO is disabled within the Organization, they will receive email instructions prompting them to reset their password on DataCamp; allowing them to log in without SSO.
How do members access the Organization once SSO has been enabled?
Once a Member has been invited to a group and they’ve accepted that invite, there are two main ways that they can log back in on subsequent visits.
From DataCamp’s sign-in page
Members can log into DataCamp directly by going to https://www.datacamp.com/users/sign_in.
On this page, they need to enter their email address and press “Next”. If this email is associated with a member who belongs to a group with SSO enabled, they will be redirected to the IdP login page to complete the sign in process. Here they will need to sign in with their SSO credentials. If this is successful, they will be redirected back to DataCamp with access to the platform.
Note: Members will need to use the same email that they have in your Organization’s IdP.
From the IdP
Members will also be able to access the Organization by first logging into your IdP, finding the DataCamp application and clicking the application to join.