Loading…

Enterprise SSO & Access Control

Secure access for your organization.

SAML, SCIM & role-based permissions

Integrate Real-Lenses with your identity provider for seamless single sign-on. SAML 2.0, SCIM provisioning, and granular role-based access control — built for enterprise security teams.

SAML 2.0

Standard

SCIM

Provisioning

MFA

Enforced

SOC 2

Compliant

How it works

Three steps to connect your identity provider

1. Download SP Metadata

Get your Service Provider metadata XML from the admin settings and upload it to your IdP (Okta, Azure AD, Google Workspace).

2. Configure IdP

Paste your IdP metadata XML back into the SSO settings to auto-fill entity IDs, certificates, and SSO URLs.

3. Users log in via IdP

Your team navigates to the login page, clicks SSO, and authenticates through your identity provider — no new passwords.

Features

Enterprise-grade identity & access.

SAML 2.0 SSO

Integrate with Okta, Azure AD, Google Workspace, OneLogin, and any SAML-compatible IdP.

SCIM provisioning

Automatic user provisioning and deprovisioning. Add/remove users in your IdP — we sync instantly.

Role-based access

Granular permissions — admin, analyst, viewer, API-only. Custom roles for enterprise plans.

MFA enforcement

Require multi-factor authentication for all users. TOTP, hardware keys, and biometric support.

Audit logs

Complete audit trail of every login, API call, and data access. Exportable for compliance.

IP allowlisting

Restrict access to specific IP ranges or VPN. Block access from unauthorized networks.

Pricing

Simple, transparent pricing.

Add-on

$299/mo

For existing plans

  • SAML 2.0 SSO
  • Up to 50 users
  • Role-based access
  • Audit logs
  • Email support
Add to plan
Popular

Professional

$799/mo

For mid-size teams

  • Everything in Add-on
  • SCIM provisioning
  • Up to 200 users
  • MFA enforcement
  • IP allowlisting
  • Priority support
Contact sales

Enterprise

Custom

For large orgs

  • Everything in Professional
  • Unlimited users
  • Custom roles
  • Dedicated CSM
  • Custom SLA
  • On-premise option
Contact sales

FAQ

Which identity providers are supported?
Any SAML 2.0-compatible IdP — Okta, Azure AD (Entra), Google Workspace, OneLogin, Ping Identity, Auth0, and custom.
How does SCIM provisioning work?
When you add or remove a user in your IdP, SCIM automatically creates or deactivates their Real-Lenses account. No manual user management needed.
Can we enforce MFA?
Yes. Professional and Enterprise plans let you require MFA for all users. We support TOTP apps, hardware security keys (FIDO2), and biometric authentication.
Do you support custom roles?
Enterprise plans include custom role creation with granular permissions for every feature, entity, and API endpoint.
How do I configure SSO for my organization?
Navigate to SSO Settings from the admin dashboard. Download your SP metadata, configure your IdP, then paste the IdP metadata back to auto-fill the configuration.

Ready to get started?

Configure SSO for your organization or talk to our sales team about enterprise plans.