Skip to main content

Hi, we have set up SSO/MFA on our Org, using Azure AD as our Identity provider. Doing this has removed the native Salesforce login for all users.  BUT we want to allow for Admin users to bypass SSO and have the option to log in directly to Salesforce with a username and password in case of a problem with SSO login and for other Admin tasks like Sandbox set and maintenance.  Any help or tips on how to allow for this kind of setup?

2 answers
  1. Jan 15, 2022, 6:37 PM

    Hi Sakshi, we are currently testing in a dev sandbox and have made SSO mandatory in there.  Azure SSO works fine but when attempting to browse to the URL - http://login.salesforce.com/ we are not able to login with our usual SysAdmin username and password.    The suggested solution in MyDomain settings to "Keep 'Login Policy' unchecked "  seems to me to be an insecure workaround rather than a stable and secure solution for allowing the option of an separate local Salesforce login for our Admin users?    Do Salesforce have any official guidelines for a seperate local logon in an enforced / compliant SSO-MFA environment?  Seems a major omission if not! 

0/9000