Customer Single Sign On (SSO)

Customer Single Sign On (SSO)

Zettagrid has started to use Single Sign On (SSO) for Zettagrid MyAccount. In future SSO will be available for VMware Cloud Director, Simtex VoIP portal and other services.

Zettagrid SSO login uses an Identity Server at https://zettagrid.me to authenticate users for Zettagrid MyAccount. Users should notice little change except they will be redirected to authenticate at https://zettagrid.me instead of within MyAccount.

Passwords are synchronised between internal (legacy) authentication and SSO.

Two Factor Authentication OTP setup is not synchronised between internal and SSO.

Customers may choose to switch to SSO for MyAccount now as described below. Over 2025, customers will be progressively moved to SSO for MyAccount and internal authentication will be phased out.

Main Login page

Login to MyAccount is now in two steps. First user is prompted to enter username then status is checked and user is either (a) prompted for password or (b) redirected to SSO server depending on their status.

Try SSO Now

On the main login page, there’s a checkbox to select Single Sign On. Simply select the checkbox, enter username and press ‘Next’ to proceed.

image-20250729-084606.png

Already an SSO User?

Users are first prompted for username:

image-20250729-051128.png

The system confirms they are using SSO login then redirects them to the SSO server to authenticate.

image-20250729-051450.png
image-20250729-051611.png

Returning SSO User

When a user logs in with SSO a cookie is set to recognise them as an SSO user. MyAccount shows login page simplified with just an “Authenticate” button. Clicking the “Authenticate” button takes the user to https://zettagrid.me to authenticate - with the same dismissible redirect warning.

image-20250729-063820.png

The SSO login process is the same as described above - prompted for password then 2FA OTP if configured.

If the user selects the “remember me” option when authenticating then their username is remembered and pre-filled.

image-20250729-072201.png

SSO and Two Factor Authentication

If a user has 2FA configured on the first login to SSO or when 2FA is enabled on the user, they will be prompted to set up 2FA in the SSO interface. Note this will be a separate 2FA setup from the one used by internal authentication.

image-20250729-072539.png

Once 2FA is configured, the user will be prompted for their 2FA code after entering password as shown below. Once prompted with this screen you should enter the code from your authenticator app.

image-20250729-072802.png

Lost 2FA

If you lose your Two Factor Authentication then you can get another user on your account to deactivate 2FA for your user, or contact our support team to reset your 2FA:

Australia: support@zettagrid.com

Indonesia: support@zettagrid.id

Reauthenticate

When accessing sensitive data, users can be asked to re-authenticate. For SSO users the re-authentication is performed on the SSO server in the same way as logging in.

When an SSO user clicks the “Reauthenticate” button in MyAccount they are redirected to https://zettagrid.me/ to reauthenticate.

image-20250729-074452.png

Security Options

The Security tab is available from the “Profile” menu. Users can change password and enable or disable 2FA.

image-20250729-074700.png

Forgot Password

The forgot password link in Zettagrid SSO directs users to the MyAccount forgot password function and users to reset their password. Passwords are synchronised between internal and SSO authentication.