Last updated
Was this helpful?
Tally supports SSO so your team can sign in with your existing identity provider — no separate Tally password required.
Once SSO is active, users enter their work email on the login page and are redirected to your IdP (Microsoft Entra ID, Okta, Google Workspace, and others). Password login is disabled for your organization once SSO is configured.
SSO setup is self-serve. A Tally admin can configure it directly from the product:
Sign in to Tally as an admin
Go to Settings → Company → Authentication (/settings/company/authentication)

Click Configure SSO
Open the SSO Configuration Portal link (valid for 5 minutes)
In the portal, connect your identity provider and complete the SAML setup
Assign the users or groups who should have access
When setup is complete, the Authentication page shows SSO is configured. Users with access through your IdP can sign in immediately.
Note: You need to be logged into Tally to generate the portal link. If your IT team doesn't have a Tally account yet, invite them from Settings → Company → Users first, or have an existing admin generate the link and share it.

After SSO is live, the login flow is automatic:
User enters their work email address
Tally detects SSO for their organization
User is redirected to your identity provider to sign in
After successful authentication, they land in Tally
No password field is shown for SSO-enabled organizations.
Last updated
Was this helpful?
Was this helpful?
