Using different SAML and JWT SSO (single sign-on) for agents and end users

Return to top
Have more questions? Submit a request


  • Niclas Kårlin
    Make sure to provide them with the URL. 

    What would those URL be for SAML or JWT respectively?

  • Niclas Kårlin

    You can also update the article with that you have now implemented a link to switch which method is "Primary".

  • Greg - Community Manager
    Zendesk Developer Support

    Hi Niclas Kårlin! In this case, the URL in question would be the remote login for the "non-primary" method. I'll flag this article to be updated with the new functionality, thanks for mentioning this!

  • Frank Rivers

    This functionality seems broken. Whatever is the primary SSO method is the only one that works. If JWT is primary, then it's the only one that seems to work. I can't even do IDP-initiated SSO without Zendesk redirecting to whatever is primary.

    I'm trying to use Azrure AD for agents and JWT for customers. But when I make JWT the primary, there's no way for my agents to log in with Azure. The same is true vice versa. Any suggestions?

  • Brett Bowser
    Zendesk Community Team

    Hey Frank,

    It looks like you have a ticket open with our Customer Care team related to this issue and they're currently investigating to find a solution. Once they have more information they will follow-up with you in the ticket.

    Thanks for taking the time to share this with us!


  • Milton

    We're having similar problems setting this up as the the advice listed here doesn't seem to work for us either.

    It seems that whatever method is set as primary takes precedent, even if you try and navigate to the login url that isn't the primary, it still redirects you to whichever happens to set as primary at the time. Is this actually working for anyone?


Please sign in to leave a comment.

Powered by Zendesk