Token-Based/Multipass SSO

How to configure Token-Based/Multipass

Path: Manage Workspace >> Security >> Authentication >> Single Signon


Multipass authentication is a single sign-on authentication strategy that allows to share their user authentication with client site

Encrypted token that is passed on in the URL or as a parameter in a post form (site key and multi-pass key are the KEY items here)

1. Enable the Single Signon (SSO) if not enabled yet and click on Add SSO button.

Screenshot 2025-08-22 at 9-29-02 AM-png-1

2. Select Multipass Token

3. On IdeaScale, add in the below data: 

On your database you will need to enter IdeaScale’s Mulipass Site Key & Multipass API Key (see screenshot below) 

multipass token copy


Multipass General Settings: 

  1. Display Name - Name that will identify this SSO, can be anything (example: My companies SAML SSO)
  2. SSO Login URL – The SSO login page that users will be redirected to

  3. Logout Success URL - The SSO logout page that users will be redirected to

  4. Blocked Email Domains – Any email addresses (aka domains) that you do not want users logging in with (example – gmail.com)

  5. Enable - Check the checkbox to enable the SSO.
  6. Debugging - Check the chekbox to enable SSO debugger for this SSO

We recommend always enabling the debugger, which will be a useful tool for catching SSO issues. 

Ensure you enable the Enabled toggle. 


 

Last Updated: September 27, 2025