Release Note
Last verified 24 Jun 2026
Single sign-on (SSO) with OIDC for DigitalOcean Kubernetes (DOKS) clusters is now in general availability. You can authenticate users to your Kubernetes clusters through an identity provider like Auth0, authentik, JumpCloud, Keycloak, or Okta, instead of using token-based authentication.
SSO is configured per cluster with an issuer URL and client ID from your identity provider. You can enable it using doctl, the DigitalOcean API, or Terraform.