IdP and SSO — identity and access

How your company identity talks to the platform, and who sees what.

1 min read · Last updated: 2026. 8.

What an IdP is

An Identity Provider is the service that holds your company identities and vouches for them when a system asks who is who. It is what enables single sign-on: a person logs in once and applications trust that session.

The practical advantage shows on offboarding: revoking the identity at the IdP removes access from every application at once, without relying on someone remembering each system.

Role-based permissions

Inside the platform, access is role-based (RBAC): each person sees only the devices and metrics in their scope. The account owner decides who is an administrator or a partner.

RoleSeesCan act
OwnerThe whole fleetEverything, including billing and roles
AdministratorThe whole fleetPolicies, lockdowns and reports
Team managerTheir group onlyReports and shifts for the group
Read onlyDefined scopeNothing — consultation only

Access windows

Beyond who can log in, the company sets when and from where: the hours and geographic regions each device is allowed to run in. Outside the window, access does not open — and the attempt is logged.

Windows are configured per group, so operations in different time zones live in the same fleet without a manual exception device by device.

Up next

Device lockdown

From blocking a single port to shutting the machine down remotely — and when to use each level.

Keep reading

팀을 더 정확하게?

오늘 무료로 시작하세요. 카드 등록은 필요 없고, 설정은 5분이 걸리지 않습니다.

7일 무료 체험
카드 등록 불필요
언제든 해지 가능
실시간 화면 모니터링USB 포트와 블루투스 잠금자동 출퇴근 기록이 있는 근무 관리정책으로 허용한 사이트와 프로그램위치와 지리적 범위기기 예방적 잠금팀 생산성 리포트종단 간 AES-256 암호화실시간 화면 모니터링USB 포트와 블루투스 잠금자동 출퇴근 기록이 있는 근무 관리정책으로 허용한 사이트와 프로그램위치와 지리적 범위기기 예방적 잠금팀 생산성 리포트종단 간 AES-256 암호화