Using Adobe ID
We're updating all organizations to the Enterprise storage model. This gives your organization greater control over your users' assets and data.
Get started with adding users to your Admin Console.
Learn how to set up your users' accounts with different ID types with or without Single Sign-on. Set up SSO for Adobe software, configure SAML settings, and go through the most common questions and errors.
A directory in the Admin Console is an entity that holds resources such as users and policies like authentication. These directories are similar to LDAP or Active Directories.
Organization identity provider such as Active Directory, Microsoft Azure, Ping, Okta, InCommon, or Shibboleth.
System admin Works with IdP directory managers and DNS managers to set up identity in the Admin Console.
DNS Manager Updates DNS tokens to validate domain ownership
Identity Provider (IdP) directory manager Handles the IdP portal and associated connectors
Created, owned, and managed by the end user. Adobe performs the authentication, and the end user manages the identity. Depending upon the storage model, users or businesses retain control over files and data.
For organizations that have been updated to the Enterprise storage model, assets and data is controlled by the organization. For organizations that have not been updated, the individual owns and controls Adobe ID assets.
Created, owned, and managed by an organization. Adobe hosts the Enterprise ID and performs authentication, but the organization maintains the Enterprise ID. Admins create an Enterprise ID and issue it to a user. Admins can revoke access to products and services by taking over the account or deleting the Enterprise ID to permanently block access to associated data. Learn more
Created and owned by an organization, and linked to the enterprise directory via federation. The organization manages credentials and processes Single Sign-On via a SAML2 Identity Provider (IdP).
The following are a few requirements and scenarios where Federated IDs are recommended:
You may use Adobe ID or Enterprise ID if your organization is currently not using SSO on other applications.
We're updating all organizations to the Enterprise storage model. This gives your organization greater control over your users' assets and data.
Get started with adding users to your Admin Console.
You can set up an Enterprise ID directory if you want more control on your users' data without using SSO. Only Admins create an Enterprise ID and issue it to a user.
See Set up organization with Enterprise ID to know the requirements and steps involved in creating Enterprise ID directories.
You must set up your user identity with Federated ID accounts to use SSO. The following are a few requirements and scenarios where Federated IDs are recommended:
You can use popular identity providers such as Microsoft Azure AD, Google, or use other SAML-based IdP to set up SSO between your organization and Adobe products.
Other SAML IdP
Set up SSO with other SAML-providers
Integrate with any standard SAML-compliant Identity Provider (IdP).
Follow the next steps after you have set up an SSO between your organization and Adobe:
Learn how to manage your domains and directories:
Learn how to change your identity provider:
Find solutions to the most commonly occuring questions and errors as you set up and manage SSO:
Azure AD
To collaborate, ask questions, and chat with other administrators, use our Enterprise and Teams Community.