All Smartsheet users can sign in using their email address and password or choose from a number of single-sign-on options. System Admins can activate or deactivate any of these login options as desired.
USM Content
Admin Center allows you to configure and manage authentication options for users in your organization at the plan or domain level.
- Plan-level: Authentication settings are applied to an entire Smartsheet plan (e.g., Business, Enterprise)
- Domain-level: Authentication settings are applied to specific email domains within a plan, allowing for more granular control over authentication and security.
Manage domain-level authentication methods
To modify how people in your domain sign in to Smartsheet:
- Sign in to Admin Center.
- Open the Menu icon in the upper left corner.
Navigate to Settings > Authentication.
The Authentication page displays.
Brandfolder Image- Select the method you want to use:
- SAML Identity Provider (IdP): Configure a SAML IdP and apply it to your organization's domain.
- Domain strict: Select domains from the list to activate domain strict. This will ensure that users within these domains only follow the login methods configured on the Authentication page.
- One-time password via email: Enable an email-based TOTP login method for your organization's domains.
- Fallback option for System Admins: Select domains from the list to activate a fallback option for System Admins.
Manage plan-level authentication methods
To modify how people in your plan sign in to Smartsheet:
The Admin Center homepage displays.
Scroll down to the Settings section and locate the Authentication card.
Brandfolder ImageSelect the method you want to manage.
The Authentication window displays.
Brandfolder Image- Use the checkboxes to activate or deactivate the available login options:
- Email + Password/One-time Password via Email
- Keep Email + Password/One-time Password via Email for Sys Admins (fallback)
- Microsoft Azure AD
- Apple
- SAML *
- Email + Password/One-time Password via Email
- Select Save.
* Select edit configuration to modify existing plan-level SAML configurations. If you haven't configured one, a not configured button displays.
