Skip to main content
← All glossary termsCompliance & Security

Single Sign-On (SSO) for LMS

Also known as: SSO, SAML SSO, OIDC SSO

SSO lets learners log in to the LMS using credentials they already have at the institution — typically via SAML 2.0, OpenID Connect (OIDC), or LDAP — so the LMS never stores passwords and access can be revoked centrally.

Single Sign-On (SSO) for an LMS removes the need for a separate password. The two dominant protocols are:

  • SAML 2.0 — the long-standing standard for enterprise & higher-ed identity (Shibboleth, ADFS, Azure AD as IdP).
  • OpenID Connect (OIDC) on OAuth 2.0 — the modern equivalent, common with Microsoft Entra ID, Google Workspace, Okta.

SSO is the single largest reduction in attack surface for an LMS — no learner passwords stored, MFA enforcement happens at the identity provider, and offboarding a graduating student or terminated employee revokes LMS access instantly.

See it in action

DeepTech is an institutional LMS by APQOR Technologies Private Limited. Book a 30-minute walkthrough with our higher-ed team.