Skip to main content

Authentication

Configure user authentication and access control for Anaphora. The platform supports enterprise-standard authentication methods for secure access.

Authentication Methods

MethodDescriptionBest For
LocalBuilt-in username/passwordSmall teams, testing
LDAPActive Directory integrationEnterprise Windows environments
SAMLSingle Sign-On via SAML 2.0Okta, Azure AD, OneLogin
OIDCOpenID Connect providersGoogle, Auth0, Keycloak

Roles and Permissions

Anaphora uses role-based access control (RBAC).

User types

Anaphora has two main user types: System users and normal users. System users will have global access and can manage the Anaphora instance. While normal users will be assigned to specific spaces with permissions scoped to those spaces.

User TypeDescriptionMethods
System userFull global access, manage system settingsLocal
Normal userAccess and manage resources within spacesAll

Space Permissions

Users are assigned permissions within specific spaces:

PermissionDescription
AdminFull access within assigned spaces
ReadWriteCreate and edit jobs, run reports
ReadonlyView reports and job status only

Permission Details

RightsSystem UserSpace AdminSpace ReadWriteSpace Readonly
View reportsYesYesYesYes
View runsYesYesYesYes
Manage jobsYesYesYesNo
Manage delivery interfacesYesYesNoNo
Manage AI providersYesYesNoNo
Manage usersYesNoNoNo
Manage spacesYesNoNoNo
Global settingsYesNoNoNo

Add User Permissions

See the Spaces documentation for details on assigning users to spaces with specific permissions.

Next Steps

  • Local Authentication - Built-in user management
  • LDAP - Active Directory integration
  • SAML - Single Sign-On configuration
  • OIDC - OpenID Connect setup
  • Spaces - Configure multi-tenant workspaces