> This page is for Taurus PROTECT, version v3.58 (default).
> For other versions, use one of these documentation indexes:
> - v3.58 (default): https://taurushq.ferndocs.com/protect-capital/v3.58/llms.txt
> - v3.56: https://taurushq.ferndocs.com/protect-capital/v3.56/llms.txt
> - v3.54: https://taurushq.ferndocs.com/protect-capital/v3.54/llms.txt
> - v3.52: https://taurushq.ferndocs.com/protect-capital/v3.52/llms.txt
> - v3.50: https://taurushq.ferndocs.com/protect-capital/v3.50/llms.txt
> - v3.48: https://taurushq.ferndocs.com/protect-capital/v3.48/llms.txt
> - v3.46: https://taurushq.ferndocs.com/protect-capital/v3.46/llms.txt
> - v3.44: https://taurushq.ferndocs.com/protect-capital/v3.44/llms.txt
> - v3.42: https://taurushq.ferndocs.com/protect-capital/v3.42/llms.txt
> - v3.40: https://taurushq.ferndocs.com/protect-capital/v3.40/llms.txt
> - v3.38: https://taurushq.ferndocs.com/protect-capital/v3.38/llms.txt

> For clean Markdown of any page, append .md to the page URL.
> For a complete documentation index, see https://taurushq.ferndocs.com/llms.txt.
> For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://taurushq.ferndocs.com/_mcp/server.

# Introduction

Configure single sign-on (SSO) for Taurus-PROTECT through an Administrator account.

For configuration instructions, see the [SSO guide](/protect-capital/docs/sso). For user-guide details, see the [SSO user guide](/user-guides/docs/sso).

## Supported protocols

SSO lets users access Taurus-PROTECT with a single identity managed by an external identity provider (IdP), such as Okta or Azure AD. Taurus-PROTECT acts as the service provider (SP) and supports:

* **OpenID Connect (OIDC)**
* **Security Assertion Markup Language (SAML)**

Taurus-PROTECT also supports **System for Cross-domain Identity Management (SCIM)** for user lifecycle management. SCIM can create, update, and delete users from the IdP and manage groups and roles globally.

> **Warning**
>
> **Important**
>
> Before integrating SSO, understand the Taurus-PROTECT user lifecycle, key management, and operating model. Use Taurus-PROTECT without SSO first to validate these workflows.