您在此处:
Salesforce 客户身份的单点登录
使用 Salesforce 客户身份的单点登录 (SSO),用户可以使用一组凭据登录多个应用程序。根据您的用例,您可以将站点配置为服务提供商或依赖方,以便用户可以使用第三方(例如 Google)的凭据登录。或者,您可以将站点设置为身份提供商,以便它可以为第三方应用程序验证用户。您也可以在站点和移动应用程序之间设置 SSO。
使用 Salesforce 客户身份的单点登录 (SSO),用户可以使用一组凭据登录多个应用程序。根据您的用例,您可以将站点配置为服务提供商或依赖方,以便用户可以使用第三方(例如 Google)的凭据登录。或者,您可以将站点设置为身份提供商,以便它可以为第三方应用程序验证用户。您也可以在站点和移动应用程序之间设置 SSO。
| 适用于 Salesforce Classic 和 Lightning Experience |
| 适用于:Professional、Enterprise、Unlimited 和 Developer Edition |
对于这些用例,配置单点登录。
当您将站点配置为服务提供商或依赖方时,用户会从第三方提供商登录您的站点。您可以使用 SAML 身份验证协议,将您的站点配置为第三方身份提供商的服务提供商。或者,您可以使用 OpenID Connect(处理身份验证和授权),或类似协议,将您的站点配置为具有身份验证提供商的依赖方。例如,当用户访问您的站点登录页面时,他们会看到使用第三方(例如 Google)登录的选项。在选择此选项时,将重定向到 Google 登录表单,您可在其中输入凭据。在 Google 验证凭据后,他们将被重定向到您的站点并登录。
如果您希望用户使用站点中的凭据登录外部 Web 应用程序,您可以将站点配置为身份提供商。对于该用例,Salesforce 将执行身份验证。您可以使用 SAML 将您的站点配置为身份提供商,或您可以使用 OpenID Connect 协议将您的站点设置为 OpenID 提供商。不论配置如何,用户都可以使用 Salesforce 凭据登录您的 Web 应用程序。
如果您想要用户从站点访问移动应用程序,而无需重新登录,请为移动应用程序配置 SSO。对于此用例,您可以使用 Salesforce 移动软件开发工具 (SDK) 创建应用程序。然后,您可以使用 OAuth 协议配置站点,以指向您的应用程序。例如,您为站点创建移动应用程序,以便用户可以从他们的移动设备访问它。设置 SSO,以便用户可以从您的站点使用他们的凭据访问您的应用程序。

We use three kinds of cookies on our websites: required, functional, and advertising. You can choose whether functional and advertising cookies apply. Click on the different cookie categories to find out more about each category and to change the default settings.
Privacy Statement
Required cookies are necessary for basic website functionality. Some examples include: session cookies needed to transmit the website, authentication cookies, and security cookies.
Functional cookies enhance functions, performance, and services on the website. Some examples include: cookies used to analyze site traffic, cookies used for market research, and cookies used to display advertising that is not directed to a particular individual.
Advertising cookies track activity across websites in order to understand a viewer’s interests, and direct them specific marketing. Some examples include: cookies used for remarketing, or interest-based advertising.