When enabling RealVNC Account SSO for your RealVNC Connect team, please be aware of the below restrictions and security considerations.
Restrictions
Teams
- Your SSO tenant/identity provider can only be associated with one Team
- All other members of an SSO-enabled Team must be SSO users; users with a standard RealVNC account cannot be part of an SSO-enabled Team
-
Mandated two-factor authentication using RealVNC Connect's 2FA cannot be enabled on SSO-enabled Teams
- Note, this does not prevent using your identity provider's 2FA for accounts, this refers to RealVNC's own 2FA for accounts which cannot be used with an SSO account
- Once a Team has SSO enabled, it cannot be undone
People (Users)
- SSO Users cannot sign in to the License Wizard, a cloud connectivity token must be used instead
- SSO Users cannot change their contact details or authentication settings in the RealVNC Connect Portal as they are controlled by your identity provider
Security considerations
Once your Team has been enabled for SSO sign-in, please be aware that:
- RealVNC Connect will not perform device authorization or two-factor authentication for users
-
Mandated two-factor authentication using RealVNC Connect's 2FA is disabled on the Team
- Note, this does not prevent using your identity provider's 2FA for accounts, this refers to RealVNC's own 2FA for accounts which cannot be used with an SSO account
- It is up to the customer to ensure that their identity provider is configured to provide adequate security for their users
Comments
Article is closed for comments.