Sign in to your partner application's management console or dashboard.
Use OpenID Connect to enable single sign-on from Clever, ClassLink, Canvas, Blackboard, Schoology, and Google.
OpenID Connect (OIDC) Single Sign-On (SSO) saves educators and students time by eliminating the need to enter usernames and passwords. Users select an application icon in their district portal or learning management system to access Adobe Creative Cloud or Adobe Express.
Configure OIDC federation between Adobe and your district portal, LMS, or Google. OIDC verifies user identity and obtains basic profile information through your existing identity provider. To modify existing SSO configurations, navigate to Settings > Identity > Authentication in the Admin Console.
Configure SSO by setting up Adobe Express or Creative Cloud in your partner application, then add the secondary Identity Provider in the Adobe Admin Console.
Prerequisites
Before you begin, have these items ready:
- Federation configuration in your directory (Azure, Google, or other SAML provider)
- Adobe licenses assigned in the Admin Console (Express or Creative Cloud)
- Partner application account (Clever, ClassLink, Schoology, Canvas, Blackboard, or Google)
- System Administrator role in the Adobe Admin Console
Set up Adobe Express or Creative Cloud in your partner application
Navigate to app library, app catalog, or integration settings.
Follow your partner application's setup instructions below.
|
Partner application |
SSO capabilities |
Setup instructions |
|
Clever |
SSO into Adobe Express from the Clever portal |
Add Adobe Express to the Clever dashboard. Watch the tutorial |
|
ClassLink |
SSO into Adobe Express from ClassLink LaunchPad |
Add Adobe Express to ClassLink Management Console. Watch the tutorial |
|
Schoology |
SSO into Adobe Express from Schoology |
|
|
Canvas |
SSO into Adobe Express through assignment workflow or SpeedGrade; SSO into Creative Cloud through app launcher |
|
|
Blackboard |
SSO into Creative Cloud through the app launcher |
|
|
|
SSO into Adobe Express through social sign-in screens and the Google Classroom add-ons feature |
No setup required on Google. SSO works when you set up federation in the Adobe Admin Console. |
Add Adobe Express as an app with the Custom Wizard in Clever, ClassLink, or Schoology. In Canvas or Blackboard, connect Adobe Express or Creative Cloud licenses directly via the LMS.
Add the partner application as a secondary IdP
Navigate to the Settings tab in the Adobe Admin Console and select Identity.
Select the appropriate directory and go to the Authentication tab.
Select Add new IdP.
Choose EDU Portal and LMS SSO and select Next.
Choose your partner application from the list and select Next.
Configure automatic account creation settings. Automatic account creation is enabled by default and allows users without a federated account to create one automatically based on a verified email domain.
Select a default country from the dropdown menu in the Attribute mappings section.
Optionally enable "Update user information" to synchronize user data from the IdP when users sign in.
Select Done.
If Google SAML isn’t your primary identity provider, and you want teachers and students to sign in with school accounts in Adobe Express, add Google OIDC as an additional SSO provider.
After completing these steps, the identity provider appears in the Authentication section of your directory settings. To add more IdPs, repeat the procedure. Test your setup by signing in with a test user account from the partner application.
When you configure a Google SAML federation, a Google OIDC configuration is automatically created in the Authentication tab. If you delete it, the system recreates it when someone signs in using Continue with Google. To prevent this, turn off the Google OIDC configuration.
If you encounter issues during testing, navigate to Support in the Admin Console to contact Adobe Customer Care.