My Service Support

What Is SSO? Single Sign-On Explained

Updated 2026-08-15 · 1140 words

What SSO Means

SSO stands for single sign-on. It is a way to access an account by signing in through an organization or another trusted account system, often called an identity provider.

Instead of creating a separate username and password for every service, you use the sign-in details managed by your employer, school, government agency, or another organization. One successful sign-in may then let you open several connected services without entering those details again each time.

If you are wondering “what is SSO?” or “what does SSO mean?”, the short answer is: one organization-managed identity is used to enter another connected account. The SSO login meaning is about where your identity is verified, not necessarily about a special type of account.

People also search for “whats sso,” “what's sso,” “whats an sso,” or “what is an sso.” In each case, they are usually asking about the same sign-in method. Strictly speaking, SSO is the sign-in system rather than a person or account.

How an SSO Login Works

How does SSO work? The account page sends your sign-in request to an identity provider. This is the system your organization uses to confirm who you are and whether you may access the requested service.

  1. You open the official account page for the service you need.
  2. You choose an option labeled “Single Sign-On,” “SSO,” “Sign in with your organization,” or similar wording.
  3. The service may ask for your work or school email address, an organization name, or an organization code so it can find the correct identity provider.
  4. You are sent to your organization's sign-in screen. If you already have an active session, this step may happen without another password prompt.
  5. The identity provider checks your sign-in and access status.
  6. You are returned to the original service. If access is approved, the account opens.

The identity provider may request an additional verification step. Follow only the prompts shown through the official sign-in flow. The connected service generally relies on the identity provider's result instead of checking a separate password for that service.

How to Sign In With SSO

Start on the official account page provided by the service or your organization. If you reached the page through a message, confirm that it matches the sign-in location you normally use. When unsure, open the organization's official site yourself and look for “Sign in,” “Account,” “Employee portal,” “Student portal,” or “Member access.”

  1. Look for an SSO or organization sign-in button before entering credentials into the regular login fields.
  2. Select that option and enter the organization information requested. Use your organization-issued email address if the page asks for an email to locate your sign-in system.
  3. If a list of organizations appears, choose the one that issued or manages your account.
  4. Complete the sign-in on the identity provider's page using the credentials and verification method your organization gave you.
  5. Wait to be returned to the original account page. Avoid repeatedly pressing the back button while the pages redirect.

If there is no visible SSO choice, check the official help or sign-in instructions supplied by your organization. Some organizations use a dedicated portal or a specific organization entry point. Do not guess the address or use an unofficial search result.

SSO Versus a Regular Login

A regular login usually belongs only to the service you are opening. You enter a username and password created for that service, and its own account system checks them.

With SSO, the organization or identity provider checks your credentials. The service receives confirmation that you signed in and may also check whether your account has permission to enter. Changing an SSO password normally happens through the identity provider, not through the connected service's regular password-reset form.

The same service may show both methods. Having a regular account does not automatically mean that its password will work in the SSO flow. Likewise, organization credentials may not work in the ordinary username-and-password boxes.

Choose the method originally assigned to your account. If your employer or school told you to use SSO, start with the organization option. If you registered directly with the service and received no organization instructions, the regular login may be the appropriate route.

Why SSO Login May Not Work

An SSO error does not always mean that your password is wrong. The failure can happen before sign-in, at the identity provider, during verification, or when the service checks your access.

  • Wrong organization entry point: You may have opened a general login page or selected an organization with a similar name. Return to the official instructions supplied by your organization.
  • Expired session: A sign-in page left open for a long time may no longer accept the request. Close that page, reopen the official account page, and begin again.
  • Account mismatch: Your browser may be signed in to a personal account or another organization's account. Check which account the identity provider displays before continuing.
  • Access restriction: Your identity may be valid, but the organization may not have assigned this service or account to you. Repeated password resets will not correct a missing permission.
  • Unavailable identity provider: If the organization's sign-in system is not responding, connected services may also be unreachable through SSO. Try again later or check the organization's official status or support information.
  • Browser problem: Blocked cookies, an outdated page, or a private browsing setting can interrupt the return from the identity provider. Restart the flow in a supported browser and follow your organization's browser guidance.

Read the full error message before trying again. Note where it appeared and whether it mentioned your account, organization, session, or permission. Do not keep submitting credentials if the page looks unfamiliar.

Recovering Access and Getting Help

Use the recovery option on the official identity provider sign-in screen if you forgot your SSO password or cannot complete its normal verification step. Look for wording such as “Forgot password,” “Can't sign in,” or “Account recovery.” Do not use the connected service's password reset unless its instructions specifically say that it manages your credentials.

Contact your organization's administrator, help desk, or account support team when you cannot find the correct SSO entry point, your account is locked, or the service says you lack access. Find the official contact method through the organization's main site, internal portal, onboarding material, or account documentation.

Contact the identity provider's official support only when the problem is clearly on its sign-in or recovery screen and your organization directs users there. If the login succeeds but the original service still denies entry, the organization that assigned the service is usually the better place to ask.

Before requesting help, record the service name, the exact error text, the time it happened, and the step where the process stopped. Do not send passwords, verification codes, recovery codes, or other secret sign-in details. A clear description helps support distinguish a credential problem from an account-permission or service-availability issue.