Schoology Learning
English Spanish

Require users to sign in with single sign-on (SSO)

Organizations that use Single Sign-On (SSO) can prevent users from signing in with Schoology-managed credentials. When enabled, users must sign in through your configured external authentication provider.

Supported external authentication providers include:

  • LDAP

  • Google SSO

  • Microsoft 365 SSO

  • SAML SSO

  • Remote Authentication

Enable SSO-only sign-in for users

If your organization uses an external authentication provider, users may attempt to sign in at app.schoology.com using credentials managed by Google, Microsoft 365, or another provider. Enforcing external authentication helps ensure users sign in through the correct method and reduces login confusion.

  1. Select Tools and choose User Management.

  2. Choose Permissions.

  3. Enable Ensure user logs in using an external authentication provider for the role.

  4. Select Save permission.

After this permission is enabled, users assigned to the role can sign in only through their external authentication provider and cannot sign in with Schoology-managed credentials.

Important considerations

  • The permission is disabled by default for all roles.

  • When disabled, users can sign in using either Schoology-managed credentials or their external authentication provider.

  • System administrators cannot enable this permission for their own role. This restriction helps prevent administrators from being locked out of Schoology.