SSO
The Akuity Platform allows you to configure a single SSO provider for Kargo, such as Dex, OIDC, or any other supported providers, ensuring secure user access to your Kargo instance.
The Akuity Platform supports the following SSO providers:
- Dex
- OpenID Connect (OIDC)
info
For more detailed information on Kargo SSO, please refer to the documentation of OSS Kargo.
Provider guides
- Microsoft Entra ID (Azure AD) — Dex OIDC or Dex SAML
- Okta — Dex SAML
Direct OIDC or Dex
Kargo authenticates users via OpenID Connect. It supports two modes:
- Direct OIDC — Kargo's UI talks to the identity provider directly, using the authorization code flow with PKCE.
- Dex — Kargo uses its built-in Dex instance as a middle-man to the identity provider.
Configuring SSO
Every provider guide starts from the same place:
-
In your Kargo Instance, go to Settings.
-
In the left panel, search for Access and go to OIDC Config.

-
Click on the Enabled toggle to enable OIDC and choose your desired
Type.
From there, follow the guide for the provider you are configuring.