Canva home
Help

Salesforce SAML configuration


Set up Single Sign-On (SSO) for your organisation using Salesforce.

This feature is available to Canva Teams and Canva Education. Only team administrators and owners can enable, configure, and change their team or district’s SSO settings.

Step 1: Add Canva to Salesforce

Follow the instructions in this guide on enabling Salesforce as a SAML identity provider.

Step 2: Verify your domain

Changing your SSO domain? To prevent duplicate user accounts, contact our Support team before the domain change.

  1. Log in to your Canva account.
  2. On the homepage, select your account profile to open menu.
  3. Choose
    gear icon Settings.
  4. From the side menu, click the
    SSO and provisioning tab.
  5. Under Domain verification, enter your team’s domain.
  6. Click Submit domain. You will then be provided with a DNS token.
  7. Create a TXT record of the DNS token using your domain host. Help from your IT team might be needed for this step.

Learn more about adding a TXT record in our Setting up Single Sign-on (SSO) article.

Step 3: Set up SAML SSO in Canva

  1. Log in to your Canva account.
  2. On the homepage, select your account profile to open menu.
  3. Choose Settings.
  4. Click the SSO and provisioning tab.
  5. Click Single sign-on (SSO) > Manage > Edit IdP metadata.
  6. Enter your identity provider’s details in the three fields:
    • SSO or login URL: Paste your Issuer (with /idp/endpoint/HttpPost appended).
    • Entity ID or Issuer URL: Paste your Issuer.
    • X.509 Public Certificate: Paste all of the contents from the certificate you downloaded.
  7. Click Save and next.

Step 4: Manage connected app in Salesforce

  1. From the Identity Provider on your Salesforce account, click Service Providers are now created via Connected Apps. Click here.
  2. Enter the following details.

3. Configure custom attributes: Email, FirstName, LastName

Step 5: Test your SSO login experience

There are two easy ways to test your SSO setup:

Option 1: Use the Test SSO button

If you're still on the Set up SSO page, scroll to the Test your SSO connection section and click Test SSO. If you're starting from the Canva homepage instead:

  1. On the homepage, select your account profile to open menu.
  2. Choose Settings.
  3. From the side menu, click the SSO and provisioning tab.
  4. Under Single sign-on (SSO) > Manage > Test SSO.

This lets you quickly check if everything's working without logging out.

Option 2: Log out and back in using SSO

  1. Before logging out, go to the SSO and provisioning tab.
  2. Click Single sign-on (SSO) > Manage > Configure SSO settings.
  3. Set the login option to Optional for everyone.
  4. Log out of your Canva account.
  5. On the login page, click Continue with email, then select Log in with SSO. If you were redirected to your team’s account, you have successfully configured SSO!

If you’re taken to your team’s page after logging in, you successfully set up SSO! If you get an error, check our Troubleshooting SSO errors article for help.

Quick tip: Using both methods can give you extra peace of mind that everything’s set up right.

Step 6: Set up login and signup controls

Choose how you want people to log in to your SSO-managed (teams).

  1. From the homepage, select your account profile to open menu.
  2. Choose Settings > SSO and provisioning.
  3. Click Single sign-on (SSO) > Manage > Configure SSO settings.
  4. Select one of the login options. Learn more about each option in Setting up login and signup controls.
  5. Click Save changes.

If you’re having trouble setting up SSO, check our Troubleshooting SSO errors article.

Was this helpful?

Helpful

Unhelpful

People also viewed