Loading
Upcoming Mandatory Changes to Public Key Infrastructure (PKI)Read More
Agentforce Contact Center
Table of Contents
Select Filters

          No results
          No results
          Here are some search tips

          Check the spelling of your keywords.
          Use more general search terms.
          Select fewer filters to broaden your search.

          Search all of Salesforce Help
          Configure Single Sign-On (SSO) with Salesforce as the Identity Provider

          Configure Single Sign-On (SSO) with Salesforce as the Identity Provider

          For Salesforce Voice with Partner Telephony, let reps use a single sign-on page to log in to Voice and in to your partner telephony provider’s system. Configure Salesforce to serve as your identity provider (IdP) and then follow your telephony provider’s instructions for completing the setup. Before you start, ask your telephony provider for the instructions for setting up SSO.

          Required Editions

          This article applies to:

          • Salesforce Voice with Partner Telephony
          View supported editions.
          User Permissions Needed
          To create permission sets: Manage Profiles and Permission Sets
          To assign permission sets: Assign Permission Sets

          Before you begin, contact Salesforce Support to request the ability to create connected apps. This requirement starts in Spring ’26.

          1. Configure Salesforce as your identity provider.
            1. From Setup, enter Identity Provider in the Quick Find box, select Identity Provider, and enable it.
            2. Click Download Metadata.
            After setting up your external client app in the next step, use the downloaded metadata XML file to help set up SSO in your external telephony system.
          2. Create an external client app (ECA) to use for SSO.
            Note
            Note We recommend using an external client app for SSO instead of a connected app. Starting in Spring ’26, customers can’t create a connected app unless they request the ability to create connected apps from Salesforce Support. To migrate a preexisting connected app, see Create an External Client App from a Connected App.
            1. Create an external client app and set Distribution State set to Local.
            2. To enable and configure SAML, configure the external client app's SAML 2.0 settings and policies.
          3. To allow access to the app, update the ECA App policies.
            1. From Setup, enter External Client App Manager in the Quick Find box. Select your ECA.
            2. Click Edit.
            3. On the Policies tab, under App Policies, select profiles for users who need access to SSO login or select permission sets that you’re using for Salesforce Voice.
            4. Save your changes.
          4. To complete the SSO setup, follow your telephony provider’s guide.
           
          Loading
          Salesforce Help | Article