---
title: Mixed Authentication / Multiple Provider Single Sign-On
description: Managing SSO with Mixed Authentication / Multiple Provider Single Sign-On
---

[Skip to content](https://help.ideascale.com/mixed-authentication-multiple-provider-sso-new-admin-panel#main-content)

English

Show submenu for translations

[![IdeaScale](https://help.ideascale.com/hs-fs/hubfs/ideascale-logo.png?width=223&height=31&name=ideascale-logo.png)](https://help.ideascale.com/?hsLang=en)

Open main navigation

Close main navigation

- English
  
  Show submenu for translations
- [Go to ideascale.com](https://ideascale.com/)

[Go to ideascale.com](https://ideascale.com/)

 Hi!👋 How can we help you today?

- There are no suggestions because the search field is empty.

1. [IdeaScale Support Center](https://help.ideascale.com/?hsLang=en)
2. [Manage Workspace](https://help.ideascale.com/manage-workspace?hsLang=en)
3. [Security](https://help.ideascale.com/manage-workspace?hsLang=en#security)

# Mixed Authentication / Multiple Provider Single Sign-On

## Managing SSO with Mixed Authentication / Multiple Provider Single Sign-On

***Path: Workspace Homepage \>\> Navigation Panel \>\> Settings \>\> Security \>\> Authentication***

| What are Mixed Authentication and Multiple Provider Single Sign-On? |
| --- |
| Mixed Authentication allows a community to accept both Single Sign-On (SSO) and IdeaScale Email/Password logins from its members. Multiple Provider Single Sign-On allows a community to offer more than one SSO identity provider (IDP) for members to choose from at login. |

Once Single Sign-On (SAML 2.0 or 3.0) has been set up for a workspace, a Workspace Administrator can additionally enable Mixed Authentication so that members can log in using either Single Sign-On or an IdeaScale Email/Password login, with Single Sign-On remaining the default method (see Exceptions below). A Community Administrator can further enable Multiple Provider Single Sign-On so that members of a community choose from more than one configured identity provider at login.

---

### Role Permissions

1. **Workspace Administrator:** Enables the IdeaScale Email/Password Login option workspace-wide, and controls whether new members can self-register to the workspace using the **Allow Workspace Member Registration** setting.
2. **Community Administrator:** Selects which members or groups may use the IdeaScale Email/Password Login option through the **Members Allowed For Ideascale Email/Password Login** and **Groups Not Allowed For IdeaScale Email/Password Login** fields under Community Settings, and enables or disables Multiple Provider Single Sign-On and manages Identity Provider (IDP) configurations for the community.
3. **Member:** Logs in using either Single Sign-On or an IdeaScale Email/Password login when Mixed Authentication is enabled and access is permitted, registers a new account when Allow Workspace Member Registration is enabled, and selects an identity provider from the login page when Multiple Provider Single Sign-On is enabled for the community.

---

**TABLE OF CONTENTS**

[Enabling IdeaScale Email/Password Login](https://help.ideascale.com/mixed-authentication-multiple-provider-sso-new-admin-panel#enable-login-pwd)  
[Workspace Registration](https://help.ideascale.com/mixed-authentication-multiple-provider-sso-new-admin-panel#ws-registration)  
[Member Login Experience With Mixed Authentication](https://help.ideascale.com/mixed-authentication-multiple-provider-sso-new-admin-panel#member-experience)  
[Multiple Provider Single Sign-On](https://help.ideascale.com/mixed-authentication-multiple-provider-sso-new-admin-panel#multiple-sso)  
[Exceptions](https://help.ideascale.com/mixed-authentication-multiple-provider-sso-new-admin-panel#Exceptions)  
[Frequently Asked Questions](https://help.ideascale.com/mixed-authentication-multiple-provider-sso-new-admin-panel#faq)

---

### Enabling IdeaScale Email/Password Login

Once Single Sign-On (SAML 2.0 or 3.0) has been set up for the workspace, the Workspace Administrator can enable the IdeaScale Email/Password Login switch under **Settings \>\> Workspace \>\> Security \>\> Authentication.** Enabling this switch allows either all members or a selected group, chosen from the **Members Allowed For Ideascale Email/Password Login** dropdown under **Community Settings \>\> Security \>\> Community Access Rules**, by the Community Administrator to log in using Single Sign-On as well as with an IdeaScale Email/Password login, with Single Sign-On remaining the default login type (see Exceptions below).

![Screenshot 2026-06-18 at 10.50.12 AM](https://help.ideascale.com/hs-fs/hubfs/Screenshot%202026-06-18%20at%2010.50.12%20AM.png?width=651&height=379&name=Screenshot%202026-06-18%20at%2010.50.12%20AM.png)

#### Restricting Access by Member or Group

1. **Members Allowed For Ideascale Email/Password Login:** Dropdown under *Community Settings \>\> Security \>\> Community Access Rules* used to select all members or a specific group permitted to use the IdeaScale Email/Password Login option in addition to Single Sign-On.
2. **Groups Not Allowed For IdeaScale Email/Password Login:** Field for specifying one or more groups to exclude from using the IdeaScale Email/Password Login option.

![Screenshot 2024-09-24 at 11.02.03 PM](https://help.ideascale.com/hs-fs/hubfs/Screenshot%202024-09-24%20at%2011.02.03%20PM.png?width=670&height=178&name=Screenshot%202024-09-24%20at%2011.02.03%20PM.png)

---

### Workspace Registration 

By default, a workspace configured with Single Sign-On does not allow new members to self-register (see Exceptions below). The Workspace Administrator can allow new member registration by enabling **Allow Workspace Member Registration** under **Settings \>\> Workspace \>\> Workspace Configuration \>\> Workspace Info \>\> General Info**

![ws registration copy](https://help.ideascale.com/hs-fs/hubfs/ws%20registration%20copy.jpg?width=670&height=482&name=ws%20registration%20copy.jpg)

Once enabled, members see a **Register** option on the login screen.

![Screenshot 2025-02-26 at 8.21.54 PM](https://help.ideascale.com/hs-fs/hubfs/Screenshot%202025-02-26%20at%208.21.54%20PM.png?width=455&height=484&name=Screenshot%202025-02-26%20at%208.21.54%20PM.png)

Selecting **Register** opens the registration page.

**[Help article on Registration Process](https://help.ideascale.com/registration-process?hsLang=en)**

---

### Member Login Experience With Mixed Authentication

When Mixed Authentication is enabled, a member sees both a Single Sign-On login option and a Continue with email button on the login screen.

![mixed sso login copy](https://help.ideascale.com/hs-fs/hubfs/mixed%20sso%20login%20copy.jpg?width=592&height=392&name=mixed%20sso%20login%20copy.jpg)

Selecting **Log in With SSO** account takes the member to the Single Sign-On login page, where the member logs in using Single Sign-On credentials.

![downloads.intercomcdn.comio15808616285e11466e10c93f5d355e9c0image](https://help.ideascale.com/hs-fs/hubfs/Knowledge%20Base%20Import/downloads.intercomcdn.comio15808616285e11466e10c93f5d355e9c0image.png?width=478&height=265&name=downloads.intercomcdn.comio15808616285e11466e10c93f5d355e9c0image.png)

Selecting **Log in With IdeaScale** takes the member to the standard IdeaScale login page, where the member logs in using IdeaScale login credentials.

![sso login email copy](https://help.ideascale.com/hs-fs/hubfs/sso%20login%20email%20copy.jpg?width=476&height=471&name=sso%20login%20email%20copy.jpg)

---

### Multiple Provider Single Sign-On

IdeaScale supports Multiple Provider Single Sign-On alongside standard Single Sign-On for a community. Each community has its own setting to enable or disable Multiple Provider Single Sign-On and its own set of Identity Provider (IDP) configurations, which can be added, edited, or deleted from community settings.

#### How Multiple Provider SSO Works

When Multiple Provider Single Sign-On is enabled for a community, the community login page displays a list of the enabled IDP configurations. A member selects the desired identity provider from the list to log in to the community.

![Screenshot 2024-09-24 at 11 copy](https://help.ideascale.com/hs-fs/hubfs/Screenshot%202024-09-24%20at%2011%20copy.jpg?width=474&height=615&name=Screenshot%202024-09-24%20at%2011%20copy.jpg)

**[Help Article for SAML Single Sign-On at IdeaScale](https://help.ideascale.com/saml-single-sign-on-at-ideascale-new-admin-panel?hsLang=en)**

---

### Exceptions

1. Default Login Type: When Mixed Authentication permits a member to log in using either Single Sign-On or an IdeaScale Email/Password login, Single Sign-On is the default login type.
2. Workspace Registration Disabled by Default: New members cannot self-register to a workspace configured with Single Sign-On unless the Workspace Administrator enables Allow Workspace Member Registration.
3. Group-Level Restriction: A group listed under Groups Not Allowed For IdeaScale Email/Password Login may be excluded from using the IdeaScale Email/Password Login option even if members are broadly permitted under Members Allowed For Ideascale Email/Password Login; the source does not explicitly confirm this override relationship.

---

### Frequently Asked Questions

#### What does Mixed Authentication allow a member to do?

Mixed Authentication allows a member to log in to a community using either Single Sign-On or an IdeaScale Email/Password login, depending on whether the member has been added to the active directory and permitted to use the IdeaScale Email/Password Login option.

#### Can access to IdeaScale Email/Password Login be limited to specific members or groups?

Yes. The Community Administrator can select all members or a specific group under Members Allowed For Ideascale Email/Password Login, and can separately exclude one or more groups using Groups Not Allowed For IdeaScale Email/Password Login.

#### Can a new member register for a workspace that uses Single Sign-On?

Only if the Workspace Administrator has enabled Allow Workspace Member Registration. By default, new member self-registration is not allowed on a workspace configured with Single Sign-On.

#### What is Multiple Provider Single Sign-On?

Multiple Provider Single Sign-On is a community-level setting that allows more than one Identity Provider (IDP) configuration to be enabled for a single community, in addition to standard Single Sign-On.

#### How does a member choose which identity provider to use when Multiple Provider Single Sign-On is enabled?

The community login page displays a list of the enabled IDP configurations, and the member selects the desired identity provider from that list to log in.

---

**Related Articles**

- [Help Article for Workspace Authentication](https://help.ideascale.com/workspace-authentication-new-admin-panel?hsLang=en)<https://help.ideascale.com/workspace-authentication-new-admin-panel?hsLang=en>
- [Help Article for Workspace Single Sign-On Settings](https://help.ideascale.com/workspace-single-sign-on-settings-new-admin-panel?hsLang=en)<https://help.ideascale.com/workspace-single-sign-on-settings-new-admin-panel?hsLang=en>
- [Help Article for SAML Single Sign-On at IdeaScale](https://help.ideascale.com/saml-single-sign-on-at-ideascale-new-admin-panel?hsLang=en)<https://help.ideascale.com/saml-single-sign-on-at-ideascale-new-admin-panel?hsLang=en>
- [Help Article for 2 Step Authentication](https://help.ideascale.com/2-step-authentication-new-admin-panel?hsLang=en)<https://help.ideascale.com/2-step-authentication-new-admin-panel?hsLang=en>
- [Help Article for Registration Process](https://help.ideascale.com/registration-process?hsLang=en)<https://help.ideascale.com/registration-process?hsLang=en>

 

Last Updated: September 22, 2026

- [Product Updates](https://help.ideascale.com/product-updates?hsLang=en#main-content)

    - [2026](https://help.ideascale.com/product-updates?hsLang=en#2026)
    - [2025](https://help.ideascale.com/product-updates?hsLang=en#2025)
- [Workspace](https://help.ideascale.com/workspace?hsLang=en#main-content)

    - [Workspace Homepage](https://help.ideascale.com/workspace?hsLang=en#workspace-homepage)
- [Manage Workspace](https://help.ideascale.com/manage-workspace?hsLang=en#main-content)

    - [Workspace Configuration](https://help.ideascale.com/manage-workspace?hsLang=en#workspace-configuration)
    - [Email Settings](https://help.ideascale.com/manage-workspace?hsLang=en#email-settings)
    - [Security](https://help.ideascale.com/manage-workspace?hsLang=en#security)
    - [Data](https://help.ideascale.com/manage-workspace?hsLang=en#data)
- [Campaign Management](https://help.ideascale.com/campaign-management?hsLang=en#main-content)

    - [Campaigns](https://help.ideascale.com/campaign-management?hsLang=en#campaigns)
    - [Workflow](https://help.ideascale.com/campaign-management?hsLang=en#workflow)
    - [Team Roles](https://help.ideascale.com/campaign-management?hsLang=en#team-roles)
- [IdeaScale AI](https://help.ideascale.com/ideascale-ai?hsLang=en)
- [IdeaScale Whiteboard](https://help.ideascale.com/ideascale-whiteboard?hsLang=en#main-content)

    - [Facilitator Guides](https://help.ideascale.com/ideascale-whiteboard?hsLang=en#facilitator-guides)
- [Best Practices](https://help.ideascale.com/best-practices?hsLang=en#main-content)

    - [FAQs](https://help.ideascale.com/best-practices?hsLang=en#faqs)
- [New User Guides](https://help.ideascale.com/new-user-guides?hsLang=en#main-content)

    - [Starter Guide](https://help.ideascale.com/new-user-guides?hsLang=en#starter-guide)
    - [Registration, Password & Authentication, New Users](https://help.ideascale.com/new-user-guides?hsLang=en#registration-password-authentication-new-users)
    - [Participation](https://help.ideascale.com/new-user-guides?hsLang=en#participation)
    - [Notifications](https://help.ideascale.com/new-user-guides?hsLang=en#notifications)
- [Personal Settings](https://help.ideascale.com/personal-settings?hsLang=en#main-content)

    - [Email, Services & Devices](https://help.ideascale.com/personal-settings?hsLang=en#email-services-devices)
    - [Your Communities & Notifications](https://help.ideascale.com/personal-settings?hsLang=en#your-communities-notifications)
    - [Messages](https://help.ideascale.com/personal-settings?hsLang=en#messages)
- [Reporting](https://help.ideascale.com/reporting?hsLang=en)
- [Idea Portfolio](https://help.ideascale.com/idea-portfolio?hsLang=en)
- [Moderator Dashboard](https://help.ideascale.com/moderator-dashboard?hsLang=en)
- [Member Management](https://help.ideascale.com/member-management?hsLang=en#main-content)

    - [Administrators](https://help.ideascale.com/member-management?hsLang=en#administrators)
    - [Custom Admin](https://help.ideascale.com/member-management?hsLang=en#custom-admin)
    - [Members](https://help.ideascale.com/member-management?hsLang=en#members)
    - [Moderators](https://help.ideascale.com/member-management?hsLang=en#moderators)
    - [Groups](https://help.ideascale.com/member-management?hsLang=en#groups)
- [Community Overview](https://help.ideascale.com/community-overview?hsLang=en)
- [Community Settings - Community Configuration](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#main-content)

    - [Community Info](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#community-info)
    - [Profile Questions](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#profile-questions)
    - [Tags](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#tags)
    - [Labels](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#labels)
    - [Strings](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#strings)
    - [Landing Pages](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#landing-pages)
    - [Custom Pages](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#custom-pages)
    - [Footer](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#footer)
    - [File Library](https://help.ideascale.com/community-settings-community-configuration?hsLang=en#file-library)
- [Community Settings - Email Settings](https://help.ideascale.com/community-settings-email-settings?hsLang=en#main-content)

    - [General](https://help.ideascale.com/community-settings-email-settings?hsLang=en#general)
    - [Notifications](https://help.ideascale.com/community-settings-email-settings?hsLang=en#notifications)
    - [Broadcast Emails](https://help.ideascale.com/community-settings-email-settings?hsLang=en#broadcast-emails)
    - [Idea Inactivity Emails](https://help.ideascale.com/community-settings-email-settings?hsLang=en#idea-inactivity-emails)
    - [Email Logs](https://help.ideascale.com/community-settings-email-settings?hsLang=en#email-logs)
- [Community Settings - Automation](https://help.ideascale.com/community-settings-automation?hsLang=en)
- [Community Settings - Community Access](https://help.ideascale.com/community-settings-community-access?hsLang=en)
- [Community Settings - Integrations](https://help.ideascale.com/community-settings-integrations?hsLang=en#main-content)

    - [App Directory](https://help.ideascale.com/community-settings-integrations?hsLang=en#app-directory)
    - [Developer API](https://help.ideascale.com/community-settings-integrations?hsLang=en#developer-api)
- [Community Settings - Data](https://help.ideascale.com/community-settings-data?hsLang=en#main-content)

    - [Export Data](https://help.ideascale.com/community-settings-data?hsLang=en#export-data)
    - [Import Data](https://help.ideascale.com/community-settings-data?hsLang=en#import-data)
    - [Erase Community Data](https://help.ideascale.com/community-settings-data?hsLang=en#erase-community-data)
- [Government](https://help.ideascale.com/government?hsLang=en)
- [Policies & Notices](https://help.ideascale.com/policies-notices?hsLang=en)
- [Community Settings - Logs](https://help.ideascale.com/community-settings-logs?hsLang=en)

[![Chill listening crop-3](https://help.ideascale.com/hs-fs/hubfs/Icon_V2-1.png?width=24&height=24&name=Icon_V2-1.png "Chill listening crop-3")](http://ideascale.com)

IdeaScale's Help Center

Copyright © 2026, IdeaScale