Hjemmeside for Proton

How to set up SSO for Lumo

Lesetid
3 min
Kategori
Lumo AI

Lumo Professional supports single sign-on (SSO), which allows you to securely log in to your Proton account and other accounts using a single password. In this article, we’ll show you how to set up SSO on Lumo as an admin, how to manage it for your business, and how members of your organization can use it.

Before you start, you’ll need the following: 

  • A Lumo Professional account with admin privileges
  • An account with admin privileges on an identity provider (IdP) such as Okta, Microsoft Entra ID, or OneLogin

Jump to:

Setting up SSO on Lumo

1. Log in to lumo.proton.me(nytt vindu) and click Settings → Your Username → Single sign-on → Configure SAML.

2. Enter your company domain name, then click Add domain.

3. Log in to your domain provider’s web portal, then enter the DNS TXT record displayed into the appropriate fields. Once done, click Continue. 

4. Import the SAML metadata for Lumo from your identity provider. You can do so using a URL or XML file or by manually filling out Text fields. Select your preferred method (which may be determined by your IdP) and enter or upload the requested data. Once completed, click Done.

5. Provide the endpoints shown to your identity provider. If your IdP asks for an Assertion Consumer Service (ACS) URL and Issuer ID, copy and paste the information from the screen into the appropriate fields. Once you’re done, click Continue.

SSO should now be configured on your Lumo account. You can get an overview of your SSO settings by clicking See details.

Multi-domain SSO setup

Each organization can set up SSO on up to 5 domains.

To access multi-domain setup, log in to lumo.proton.me(nytt vindu) and click Settings → Your Username → Single sign-on. Note that each domain requires its own SSO configuration, added separately in your organization settings. All domains must share identical SAML settings, meaning any additional domains you add must match the configuration of the first.

How to manage SSO on Lumo

Once SSO is enabled, your organization’s users can now log in to Lumo using the username and password provided by your identity provider.

See users who have joined your organization

  1. Log in to lumo.proton.me(nytt vindu).
  2. Click Settings → Your Username  → Users.

You’ll see a list of your organization’s members who are using SSO. Note that users will only appear on this list after they have signed in at least once. 

Add or edit SSO users

New users can only be added through your identity provider. Once added, you can manage each user’s SSO access on Lumo.

  1. Log in to lumo.proton.me(nytt vindu).
  2. Click Settings → Your Username  → Users.
  3. Click the dropdown menu in the Edit column next to their email address.

Turn off SSO for your organization

Note that doing this will delete all configurations and users associated with your domain.

  1. Log in to lumo.proton.me(nytt vindu).
  2. Go to Settings → Your Username → Single sign-on → Remove single sign-on → Stop using single sign-on.
  3. Follow the prompts to proceed with turning off SSO.

How to log in with SSO on Lumo

If an administrator for your organization has configured SSO and enabled Lumo for your user account, you can sign in to Lumo on web using your IdP login. To do this, simply enter your username and password.

Note: SSO is currently supported only on web. Mobile access will be available in the future.