First Time Admin
9 min
overview this guide is a step by step walkthrough of the shi one onboarding process note that the person who performs this onboarding process will have admin permissions in shi one other users designated as admins can be added after onboarding is complete the onboarding process has three parts complete the shi one organization registration choose how your organization's users will sign in set up security groups if your organization's shi one account has already been set up, jump ahead to first time user docid rykl3rqhvei kpjqpild initial account setup login for admin use chrome, edge, or firefox as your browser internet explorer is not supported when you receive the shi one portal onboarding email, click the start onboarding process button confirm your email address a verification code is sent to your email, which you then confirm fill in the shi one organization registration choose how your organization's users will sign in microsoft office 365/entra id sso (recommended) google sso okta sso register new shi one user accounts if your organization would like to use a sign in option that is not listed above, reach out to your shi account team to explore available options and review the requirements microsoft office 365/entra id sso if you select microsoft sso, you will be asked if you are an o365/entra id admin if you are an o365/entra id admin, you can authorize the sso connection by clicking the grant tenant wide admin consent to shi one button if you are not an o365/entra id admin, send the below url to your organization's o365/azure admin (usually someone on your it team) to authorize the application on your behalf https //login microsoftonline com/common/adminconsent?client id=612f0fa7 b4f7 44b9 8684 5e0c36200771 admin consent allows shi one to read user profiles and enable sso login no other tenant data is accessed the o365/azure admin's email address domain must match the organization's email domain in shi one if the email for the account in shi one is @bird com then the o365/azure admin's email must also be @bird com if the email for the account in shi one is @bird com but the o365/azure admin's email is @bird onmicrosoft com, they will not be able to grant permission or sign in to shi one to add a second email domain to your shi one account, see getting started docid\ zvmalv ptcdujpafma4xf setting up google sso to grant sso permissions to shi one, you have two options if you are a google admin, sign in to google and authorize the shi one application if you do not have permission to grant authorization yourself, contact your organization's google admin (usually someone on your it team) to authorize the application on your behalf the google admin's email address must match the organization's email in shi one if the email for the account in shi one is @bird com then the admin's email must also be @bird com if the email for the account in shi one is @bird com but the google admin's email is @bird google com, they will not be able to grant permission or log into shi one to add a second email domain to your shi one account, see getting started docid\ zvmalv ptcdujpafma4xf okta sso for more information about setting up okta as the identity provider for shi one, see the okta docid\ tqhdfxjfujxstdw0r7plo integration guide shi one manual account registration choosing this option requires all users to manually register their accounts the first time they sign in fill out the shi one organization registration verify the registration click on register an account verify your email sign in security groups once these steps are complete, see security groups docid\ bqvuyiv9eix4klu0n dip to complete the onboarding process onboarding is not complete until security groups are configured