---
title: Setting up SSO to PingDirectory from PingFederate
description: You can set up single sign-on authentication to the PingDirectory admin console using PingFederate as the authorization server.
component: pingdirectory
version: 11.0
page_id: pingdirectory:pingdirectory_server_administration_guide:pd_ds_sso_pd_pf
canonical_url: https://docs.pingidentity.com/pingdirectory/11.0/pingdirectory_server_administration_guide/pd_ds_sso_pd_pf.html
revdate: August 21, 2024
---

# Setting up SSO to PingDirectory from PingFederate

You can set up single sign-on authentication to the PingDirectory admin console using PingFederate as the authorization server.

To increase your control over who can access the PingDirectory admin console, you can configure single sign-on (SSO) *(tooltip: \<div class="paragraph">
\<p>The process of authenticating an identity (signing on) at one website (usually with a user ID and password) and then accessing resources secured by other domains without reauthenticating.\</p>
\</div>)* using PingFederate as the OpenID Connect (OIDC) *(tooltip: \<div class="paragraph">
\<p>An authentication protocol built on top of OAuth that authenticates users and enables clients (relying parties) of all types to request and receive information about authenticated sessions and users. OIDC is extensible, allowing clients to use optional features such as encryption of identity data, discovery of OpenID Providers (OAuth authorization servers), and session management.\</p>
\</div>)* provider. Migrating authorization to PingFederate enables you to manage administrative access to PingDirectory more effectively in environments where you already rely on PingFederate workflows.

To set up SSO authentication to the admin console:

1. Complete the steps for [Configuring PingFederate for SSO](pd_ds_sso_pd_pf_pf_setup.html).

2. Complete the steps for [Configuring PingDirectory for SSO](pd_ds_sso_pd_pf_pd_setup.html).
