Identity Implementation Guide
Summer '21 (API version 52.0)
Spring '21 (API version 51.0)
Winter '21 (API version 50.0)
Summer '20 (API version 49.0)
Spring '20 (API version 48.0)
Winter '20 (API version 47.0)
Summer '19 (API version 46.0)
Spring '19 (API version 45.0)
Winter '19 (API version 44.0)
Summer '18 (API version 43.0)
Spring '18 (API version 42.0)
Winter '18 (API version 41.0)
Summer '17 (API version 40.0)
Spring '17 (API version 39.0)
Winter '17 (API version 38.0)
Summer '16 (API version 37.0)
Spring '16 (API version 36.0)
Winter '16 (API version 35.0)
Summer '15 (API version 34.0)
Spring '15 (API version 33.0)
Winter '15 (API version 32.0)
Spring '14 (API version 30.0)
What Is Salesforce Identity?
How to Use Identity
Brand Your Salesforce Org’s Domains
What Is My Domain?
Set the My Domain Login Policy
Customize Your My Domain Login Page with Your Brand
Create an Interview-Based Login Page with My Domain Login Discovery
Add Identity Providers to the My Domain Login Page
Customize Your My Domain Login Page for Mobile Auth Methods
Get System Performance and Maintenance Information with My Domain
Connected Apps
Single Sign-On from an External Identity Provider
Multi-Factor Authentication
Get More Information About Salesforce Identity, Single Sign-On, and Security
Configure My Domain Settings
Determine the user experience when logging into your Salesforce org
via your My Domain. Manage user logins and authentication methods and customize your login
page with your brand.
| Available in: both Salesforce Classic (not available in all orgs) and Lightning Experience |
| Available in: Group, Essentials, Professional, Enterprise, Performance, Unlimited, and Developer Editions |
My Domain settings apply to all your org’s deployed and provisioned domains.
Note
-
Set the My Domain Login Policy
Manage your user logins by customizing the login policy for your Salesforce org’s My Domain. By default, users log in from a generic Salesforce login page, bypassing the login page specific to your My Domain subdomain. To disable authentication for users who don’t use your My Domain login page, set a login policy. If you don’t set a login policy, users can make page requests without your My Domain URLs, such as when using old bookmarks. -
Customize Your My Domain Login Page with Your Brand
My Domain gives you a point-and-click way to brand the page that prompts users to log in to your Salesforce org. You can replace the Salesforce logo with your own and change your background and login button colors. You can also display content to the right of your login form. Branding options apply to the entire login experience, including pages for users to verify their identity and reset passwords. They also apply to login flows. -
Create an Interview-Based Login Page with My Domain Login Discovery
Configure My Domain with Login Discovery to simplify the login process for users. Login Discovery is sometimes called interview-based login because it’s a two-step process. First, users identify themselves with an email address or phone number at the login page. Next, users verify themselves depending on the identifier entered. Users can verify themselves with a password, their SSO credentials, or Lightning Login. You set up Login Discovery from the My Domain Setup page after you create an Apex class that implements the MyDomainLoginDiscoveryHandler interface. -
Add Identity Providers to the My Domain Login Page
Allow users to authenticate using alternate identity provider options directly from your My Domain login page. If you enabled single sign-on (SSO) and configured SAML, or set up external authentication providers, you can display them on the login page. Users are sent to the identity provider’s login screen to authenticate and then redirected back to Salesforce. -
Customize Your My Domain Login Page for Mobile Auth Methods
You can enable advanced browser-based authentication methods for mobile users from the My Domain Setup page.