Skip to main content


This topic describes how to configure SAML SSO with OneLogin to allow employee access to your Lacework Console.

In your OneLogin account, complete the following steps:

  1. Sign in to OneLogin with super user privileges.
  2. Go to Applications > Applications.
  3. Click Add App and search for Lacework.
  4. Click the Lacework app.
  5. Provide a display name and description and click Save.
    The app’s settings display in the right pane.
  6. Click Configuration.
  7. Provide your Lacework account name and click Save. You can find your account name in the URL you use to access the Lacework Console. For example, if your Lacework URL is, your account name is mycompany.
  8. Go to More Actions > SAML Metadata.
    This downloads the IdP metadata, which is required to complete the setup in the Lacework Console.
  9. In a separate browser tab or window, sign in to the Lacework Console. On the Lacework SAML configuration page (see SAML Configuration), upload the IdP metadata returned from step 8.

To enable JIT user provisioning, see Configure SAML JIT.