• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer
ControlUp Community

ControlUp Community

Connect, Learn, and Grow

  • Blog
  • Archives
  • Findings
  • Videos
  • Categories
    • ControlUp One Platform
    • ControlUp for Apps
    • ControlUp for Compliance
    • ControlUp Dashboards
    • ControlUp for Desktops
    • ControlUp for VDI
    • ControlUp Scripts & Triggers
    • ControlUp Synthetic Monitoring
    • ControlUp Workflows
  • Topics
  • Meetups
  • Events
    • Logos & Wallpaper
    • ControlUp.com
  • Join

Configuring SAML SSO in ControlUp

Posted on January 15, 2026

A team member asked about configuring SAML SSO correctly, with a question about the default role and user permission assignments. Other team members clarified that the default role should be the minimum level of permissions and that additional permissions can be assigned through SAML roles. An example was provided of how SAML roles can provide additional permissions for specific users.


Read the entire ‘Configuring SAML SSO in ControlUp’ thread below:

Hi team! I have a question. To configure the SAML SSO correctly, i need to change the Default Role to a Viewer for exemplo? And them when the User Admin connect using the SAML option automatically that object assignment to a Custom role what i create in SSO Groups? (I appointed a entra id group what my user admin is in). Because, now, the behavior is: My admin use the SAML option to loggin but only role is assigned to him is "No permission" which is the one that is, but i created a SSO Group and personalized Role with the SSO Group name.


The default role should be the minimum permissions you want your users to have. Generally speaking, viewer.

However, this assumes that you have some sort of filtering in place during the SAML process. As in, that you do not allow users who should not have access to ControlUp at all, to log in.

If you do not filter who can access ControlUp via your identity provider (Entra ID). Then you should use No Permissions.

Generally speaking the model is that you let the default role get them in the door. Then SAML roles provide additional permissions on top of that.

For example someone I worked with recently. See how they are directly assigned (via the default role) to Viewer but some get additional permissions during login? That is SAML role/group assignment.

Continue reading and comment on the thread ‘Configuring SAML SSO in ControlUp’.  Not a member? Join Here!


Categories: All Archives, ControlUp for VDI
Topics: Logs, SAML Authentication

Ask Us Anything, Connect, Learn, and Grow with the ControlUp Community!

Login to the ControlUp Community to ask us anything, stay up-to-date on what’s new and coming soon and meet other like-minded techies like you.

Not already a member? Join Today!

Primary Sidebar

ControlUp Academy

Enroll in ControlUp Academy for expert-led technical training, equipping you with skills to effectively deploy, manage, and grow your ControlUp investment.

Learn here >

Rotating Images

Hidden Gem from our Community on Slack!

ControlUp Betas - What's Coming Next?
NEW ControlUp Features - Stay Up-to-Date!
ControlUp Scripts - Scripting, Zero to Hero
Latest KB Articles - Be the First to Learn

Video Tutorials Library

Visit our technical how-to videos, offering step-by-step tutorials on advanced features, troubleshooting, and best practices.

Watch here >

ControlUp Blog

Check out the ControlUp blog for expert advice and in-depth analysis.

Read here >

ControlUp Script Library

Visit the ControlUp technical script library, which offers a multitude of pre-built scripts and custom actions for your monitoring and troubleshooting requirements.

See here >

ControlUp Support

Visit the ControlUp support home and to delve deeper into ControlUp DEX solutions.

Browse here >

Footer

      

ControlUp Community
Of Techie, By Techie, For Techie!

Terms of Use | Privacy Policy | Security
Dive Deeper, Learn more at ControlUp.com

  • facebook
  • twitter
  • youtube
  • linkedin

© 2023–2026 ControlUp Technologies LTD, All Rights Reserved.

We use cookies to ensure that we give you the best experience on our website. by continuing to use this site you agree to our Cookie policy..