Feature: SSO and directory
Single sign-on and directory sync
Sign in through your own provider with SAML or OIDC, connect LDAP / Active Directory, and keep accounts in sync with directory deprovisioning. It is part of the Enterprise plan.
SSO & directory
SAML / OIDC sign-on
Route operators through your identity provider with SAML or OIDC, so access follows your existing sign-on and offboarding.
LDAP / Active Directory
Connect LDAP / AD so operator identity comes from the directory you already run.
Directory deprovisioning
When a user is removed from the directory, their Vexaro account is disabled too, so access ends when offboarding does.
Two-factor authentication
Each operator can turn on two-factor authentication with an authenticator app.
Part of the Enterprise plan
SSO, directory integration and SIEM export come together in the Enterprise plan, with self-hosting and custom terms, rather than as separate add-ons.
Included in Enterprise
SSO / OIDC ships in the Enterprise plan rather than as a separate per-feature SKU.
Directory integration too
LDAP / AD, SCIM and SIEM export are part of the same Enterprise plan, so identity and audit come together.
A clear starting price
Enterprise starts at $149 a month and is quoted for your organisation, with no per-seat math.
Identity, end to end
From sign-on to offboarding, access follows the systems you already trust.
Sign-on
Operators authenticate through your IdP with SAML or OIDC.
Authorisation
Roles and per-organisation scoping decide what each operator can see and do in the console.
Offboarding
Directory deprovisioning disables a user's Vexaro account when they leave.
Frequently asked questions
Bring your own identity provider
Connect SAML, OIDC and your directory, keep access in step with offboarding and add two-factor sign-in, on the Enterprise plan.
SSO & directory on the Enterprise plan