What is Data Center SSO?
Single sign-on (SSO) lets a user get into Data Center without typing a separate Data Center password. Instead they sign in with an account they already have, and Data Center trusts that sign-in.
Two sign-in providers are supported today:
- MMI ONE - MMI's unified account, used across MMI products.
- Microsoft - a work or school account. Customers may also call this Entra ID, Azure AD, or "my Office login."
In a nutshell: the user signs in once with MMI ONE or Microsoft and lands in Data Center, with no separate Data Center password needed.
Who Has Access
SSO is set per user, not bought as a plan upgrade. Which sign-in method a user gets depends on how their account is set up:
| If the user's account is... | They sign in by... |
|---|---|
| Linked to an MMI ONE account | Entering their email on the Data Center sign-in page. They are sent straight to MMI ONE and never see a password box. |
| At a company set up for Microsoft sign-in | Clicking Sign in with Microsoft on their company's branded sign-in page. |
| A standard Data Center account | Entering their email and Data Center password as normal. No change for these users. |
Important: the user must already exist in Data Center before SSO will work. Signing in with a brand new Microsoft or MMI ONE account that was never set up in Data Center will fail with a "no account found" message. SSO connects an existing account to a sign-in method. It does not create access on its own.
How to Sign In:
MMI ONE
- Go to the Data Center sign-in page.
- Enter your email address and continue.
- If your account is linked to MMI ONE, you are sent to MMI ONE automatically. No Data Center password is requested.
- Sign in to MMI ONE. You are returned to Data Center and signed in.
MMI ONE users manage their password in MMI ONE, not in Data Center. Password resets happen on the MMI ONE side.
Microsoft
- Go to your company's Data Center sign-in page, or the general SSO sign-in page.
- Click Sign in with Microsoft.
- Sign in with your work or school account, and approve the prompt if Microsoft asks.
- You are returned to Data Center and signed in.
Signing out of Data Center also signs the user out on the Microsoft side.
Two-step verification
Some companies require an SMS verification code at sign-in. If that is on for the customer, SSO users still get the code step after their provider sign-in. Once a device is verified, it is remembered for about a week before asking again.
Links
| What | Link |
|---|---|
| Data Center sign-in | https://new.mmi.run/login |
| SSO sign-in page (MMI ONE and Microsoft buttons) | https://new.mmi.run/sso |
| MMI ONE | https://one.mmi.io |
| Submit a support ticket | https://help.mmi.io/kb-tickets/new |
| In-app help | The ? (Help & Resources) button in the top navigation bar |
Customers with their own branding have a separate branded sign-in page rather than the general one. If a customer says the Microsoft button is missing, first check which page they are actually on.
Provider Help Articles
Use these when the problem is on the provider's side rather than in Data Center.
Microsoft
- Microsoft account help hub: https://support.microsoft.com/account-billing
- Check your own sign-in activity and blocks: https://mysignins.microsoft.com
- Manage your work account, password, and verification methods: https://myaccount.microsoft.com
- For the customer's IT admin, identity documentation: https://learn.microsoft.com/entra/identity/
- For the customer's IT admin, app access and admin approval: https://learn.microsoft.com/entra/identity/enterprise-apps/
MMI ONE
- Sign-in and account management: https://one.mmi.io
- MMI ONE users reset their password in MMI ONE, not in Data Center.
Common Questions and Troubleshooting
"I get a message telling me to sign in with MMI ONE"
The account is linked to MMI ONE, so the Data Center password no longer applies. Click the MMI ONE button on that screen and sign in there. This is expected behavior, not an error.
"My Data Center password stopped working"
Most often the account was moved to MMI ONE sign-in. Ask the customer to enter their email on the sign-in page and see whether they are sent to MMI ONE. If they are, that is now their sign-in method.
"It says no account found, please contact your system administrator"
The provider sign-in worked, but there is no matching Data Center account for that email address. Two common causes:
- The user was never added to Data Center.
- The user signed in with a different email address than the one on their Data Center account, for example a personal address or an old company address.
Confirm which email address they used, then check with their account admin.
"I do not see the Sign in with Microsoft button"
Check the exact URL they are visiting. The Microsoft button appears on the SSO sign-in page and on branded company sign-in pages, not on the general email and password page.
"There is an error with your account, please contact your account admin"
The account is suspended. SSO will not get around a suspension. The customer's account admin needs to reinstate it.
"The link I clicked is invalid or expired"
Sign-in links sent by email are time limited. Ask the customer to request a fresh link, or to sign in directly from the sign-in page instead.
"I signed in fine but a linked tool will not open"
Links out to other MMI tools from the navigation bar depend on the permissions on the user's account, and are separate from how they signed in. If a user can sign in but a tool is missing or errors, that is a permissions question for their account admin, not an SSO problem.
Limitations and things to know
- SSO does not create Data Center accounts. The account has to exist first.
- A user has one sign-in method at a time. An MMI ONE user cannot fall back to a Data Center password.
- MMI ONE password and profile changes are made in MMI ONE. Data Center cannot reset an MMI ONE password.
- Connecting a Bonzo CRM account inside Data Center is an integration, not a sign-in method. It does not replace how a user signs in.
- Two-step verification still applies where the customer has it enabled, on top of SSO.
When to Escalate
Escalate if:
- The user has a confirmed Data Center account with a matching email address and still gets "no account found."
- Sign-in loops, hangs on the "signing you in" screen, or returns an error the customer cannot get past.
- Multiple users at the same company are blocked at once.
- A user is sent to the wrong sign-in method, for example being pushed to MMI ONE when they should have a password.
Please gather before escalating:
- The exact email address used at sign-in.
- Which provider was used, MMI ONE or Microsoft.
- The exact URL of the sign-in page they started from.
- A screenshot of the error, including any message text.
- Date, time, and time zone of the attempt.
- Whether it affects one user or several at the same company.
Comments
0 comments
Article is closed for comments.