What is Platform Single Sign-on?
Platform SSO (PSSO) is a macOS feature that allows an Identity-provided (IdP) SSO extension to integrate directly with the macOS login window, Setup Assistant, and app authentication flows.
It ensures the Mac and the user are registered with our IdP (Microsoft Azure/Entra), enabling seamless token refresh, password sync, and passwordless authentication. It also allows the user to seamlessly log into any of our SJU-managed websites and integrations that require your SJU username and password.
As an example, once you've logged into your Mac and you open up Google Chrome to log into The Nest, you won't be prompted to enter your username and password since macOS now already has your information cached from when you logged into the computer.
More information can be found here on Apple's web site.
Why are we using Platform SSO?
All SJU users must change their password periodically. When you update your password in Microsoft Azure/Entra ID (username@sju.edu), your Mac does not automatically know about the change, which can cause issues.
Platform SSO maintains the connection between your Mac and your SJU account. It detects when your Azure/Entra ID password has been updated and keeps your macOS login and authentication tokens in sync.
This prevents repeated Keychain prompts and other sign‑in interruptions by ensuring your Mac always uses your current account credentials.
Setting up Platform SSO
-
Provided you have an SJU-issued Mac, you will be prompted with the following notification once stating “Registration Required”:

-
Upon clicking the notification, a window will open describing what “Single Sign-On for Mac” is:

Click “Continue”.
-
You will be prompted for your SJU credentials (@sju.edu email address and password):

This will register your device with our Azure environment.
-
Next, You will be prompted for your Device Password. (This password is just your current SJU password)

Click “Unlock”. This will confirm your password is now synced properly.
**NOTE**
Prior to SJU rolling out Platform SSO in the Summer of 2026, an application called "JAMF connect" handled syncing our passwords, so both passwords should already match at the time of setting this up.
-
Upon Successful Authentication, you will see a window saying “Registration Complete”:

Click “Done”
If you need help with signing into your Mac, or are having issues with Platform SSO, please contact the Technology Service center by submitting a ticket here, or by contacting 610-660-2920.