-
Type:
Suggestion
-
Resolution: Fixed
-
Component/s: None
-
None
Problem Definition
As reflected in ID-6343 , enabling SAML in a Cloud environment can impact existing accounts of the same domain that already exist in another Cloud environment.
For example, SAML can force all accounts under acme.com to redirect to an Identity Provider (Azure, Okta, etc). In other words, any acme.com account would be subject to SSO redirection no matter the Cloud URL they attempt to access.
Suggested Solution
In the Before you begin section of our SAML documentation and the What you need to know section in the the SAML single sign-on configuration, suggesting to add this as the first bullet point: "Before enabling SAML, contact support to assess your cutover plans to help ensure the process goes as expected"
Workaround (Optional)
Reach out to support and request assistance if you are unsure whether enabling SAML will introduce problems and potentially impact the login experience in a negative way.