Community Access Rules
Community-level access rules for SSO and social logins.
Path: Workspace Homepage >> Navigation Panel >> Settings >> Community >> Community Access >> Community Access Rule
| What are Community Access Rules? |
|---|
| Community Access Rules are community-level settings that determine which authentication mechanisms — Single Sign-On (SSO), IdeaScale email-password, and Social Logins — members can use to log in to a specific community. |
A Community Administrator can enable Community Access Rules to select which authentication mechanisms are available for the community. If no rules are defined at the community level, IdeaScale email-password is the default login mechanism.
Role Permissions
- Community Administrator: Enables and configures Community Access Rules, selecting which authentication mechanisms — Email Login, Social Login, and Single Sign-On (SSO) Login — are available for the community.
- Workspace Administrator: Can view Community Access Rules if a member of the community, regardless of role within the community.
TABLE OF CONTENTS
Email Login
Social Login
SSO Login
Exceptions
Frequently Asked Questions
Email Login
Email Login allows members to log in to the community using their IdeaScale credentials, as an alternative to Single Sign-On (SSO). Enabling this option displays dropdowns for the Community Administrator to select which groups are, and are not, allowed access via IdeaScale credentials.

Social Login
Social Login options available to members are inherited from Workspace settings at the time the community is created. The Community Administrator can enable or disable individual Social Login options as required at the community level.
Single Signon Login
Single Sign-On (SSO) configurations set up at the workspace level are available for selection under this section. The Community Administrator can choose to enable or disable them at the community level. See Exceptions below for how enabling SSO affects member approval requirements.
Exceptions
- SSO Enabled: A community with Single Sign-On (SSO) enabled automatically allows members to join without requiring prior approval, regardless of the member approval settings otherwise in place.
- Multiple SSO Configurations: If a community has multiple SSO configurations but only one is currently active, only members who log in using the active SSO configuration are exempt from needing prior approval to join the community.
Frequently Asked Questions
What happens if no Community Access Rules are defined for a community?
IdeaScale email-password is used as the default login mechanism when no Community Access Rules are defined at the community level.
Who can view Community Access Rules for a community?
The Community Administrator can view and configure Community Access Rules. A Workspace Administrator can also view them, but only if they are a member of the community, regardless of their role within it.
Are Social Login options set at the community level or the workspace level?
Social Login options are inherited from Workspace settings when the community is created. From that point, the Community Administrator can enable or disable individual options at the community level.
Related Articles
Last Updated: August 31, 2026