How to login with SSO

A guide for users in accessing their accounts when Enterprise SSO is enabled

Who can use this feature? SSO is available on Enterprise plans Your system Administrator will have to enable SAML SSO for your primary email domain.

Single Sign On (SSO) allows users to log into many applications or websites using an identity provider. Security Assertion Markup Language (SAML) is a security standard for managing authentication and access.

In a SAML SSO set-up, the identity provider manages the organisation's user accounts and credentials. The service provider (Aphex) is the app or website that provides services to the user or organisation.

When using SAML SSO, members are forced to log in to their Aphex account using the organisation's identity provider.

When SSO is enabled for your domain, you will be unable to log in with any other method. E.g. if your email is elon@tesla.com and SSO is enabled for tesla.com domain, you must use SSO and cannot sign in with a password or social providers.

Log In Steps

  1. Head to the Aphex log-in page (app.aphex.co)

  2. Enter your email address in the login form and submit

  3. You will be redirected to your Identity Provider (Microsoft, Okta, etc) to confirm your identity

  4. Once completed, you will be redirected back to Aphex in a logged-in state

Troubleshooting

If you have issues with logging into Aphex via SSO, please check the following possible issues;

  1. Error saying Oauth2 sign up/in is not allowed if SSO is enabled:

    • This usually means you have attempted an invalid social login method (such as Connect with Google or Connect with Microsoft) while SSO is enabled.

    • To solve this, please head to app.aphex.co and manually type your email address in the login form and submit

  2. Unable to proceed past the login page with no visible errors:

    • This usually means you have attempted an invalid login method (such as email/password) while SSO is enabled.

    • The most common cause is your browser attempting to autofill and auto-submit your email and password.

    • To solve this, please delete the saved password in your password manager

  3. User does not exist error:

    • This usually means that the email address returned by the Identity Provider does not exist in Aphex.

      • This could indicate that you are a new user and can head to the Sign Up page, or

      • Your Primary Email address returned by your Identity Provider is different than you expect. For example, if your Aphex account is usually accessed from elon@tesla-hondajv.com but your company identifies you as elon@tesla.com you will appear as a new and separate user.

  4. Successful login but cannot find your usual projects

    • This usually means that the email address returned by the Identity Provider does not match your usual one in Aphex.

Last updated