CloudRadial AutomationAI lets a workspace Owner switch off password sign-in entirely, so Microsoft 365 or Google single sign-on becomes the only way in. This article explains what the setting covers, how to turn it on safely, and what users see afterwards. It is for the Owner Role.
- What the Setting Does
- Before You Turn It On
- Turning Off Password Sign-In
- What Users See
- Turning It Back On
What the Setting Does
With password sign-in disabled, a member of your workspace can only sign in through Microsoft 365 or Google. The setting covers both non-SSO ways in, not just the password:
- Signing in with an email address and password
- Signing in with an emailed one-time code
Both are closed, because leaving the emailed code available would be a way around the very control the setting exists to enforce. AutomationAI will not send a one-time code that could not be redeemed, and it does so without revealing to the sender whether the workspace has the setting on.
The rule is applied when someone signs in, not merely hidden in the interface, so it holds however the sign-in was started.
Before You Turn It On
Important -> Confirm that every member of your workspace can sign in with Microsoft 365 or Google before you turn this on. Anyone who has only ever used a password will not be able to get in afterwards.
Check your Team (/settings/team) list against the accounts your identity provider covers, and have anyone who has not yet used single sign-on do so once while password sign-in is still available.
The setting applies to your workspace only. A user who belongs to more than one workspace can still sign in with a password to the others.
Turning Off Password Sign-In
- Open Settings > Overview (
/settings). - Turn on Password sign-in disabled.
- Confirm. The change takes effect for the next sign-in; sessions already signed in are not ended.
Only the Owner Role can change this setting.
What Users See
A member who tries to sign in with a password is told that the workspace requires single sign-on and is pointed at the Microsoft 365 and Google buttons. Requesting an emailed code produces the same neutral acknowledgment it always has, but no code arrives.
This applies to this workspace only. A member who also belongs to a workspace that still allows passwords can sign in there with a password or an emailed code exactly as before — the setting governs access to your workspace, not the person’s account.
Single sign-on satisfies the multi-factor requirement on its own, so members signing in with Microsoft 365 or Google are not asked for a second factor by AutomationAI — their identity provider owns that. See Signing in and setting up multi-factor authentication (MFA).
Turning It Back On
Switch Password sign-in disabled off again in Settings > Overview and password sign-in resumes immediately. Existing passwords are not deleted while the setting is on, so nobody has to set a new one. A member who has forgotten theirs can reset it as usual — see Changing your password.
If you are still having trouble, we’re here to help! Submit a ticket here for assistance, and don’t forget to check our status page to ensure there are no outages in your area.
Comments
0 comments
Please sign in to leave a comment.