GBLI Authz PoC
Login
Identity Routing

Authentication stays separate from authorization.

Domain precedence is enforced here: @jeanedwards.com goes to Entra, @gbli.com goes to Okta, @pm.me goes to Authbeast, and local demo usernames stay on native Logto sign-in.

Start sign-in

Type a username or email address and the app will route you to the right upstream IdP before starting OIDC.

Authbeast SAML needs a matching email address until its Logto connector ID is configured in the app.

Providers

Use these direct links when you already know the right upstream provider or when no automatic match exists.

Local Demo Users

Use native Logto local sign-in for the curated demo usernames.

Match rules: @gbli.demo

Continue with Local Demo Users
JeanEdwards Entra

Automatic match for users in the jeanedwards.com Microsoft tenant.

Match rules: @jeanedwards.com

Connector ID is not configured yet for this provider.

GBLI Okta

Automatic match for gbli.com identities routed into Okta.

Match rules: @gbli.com

Connector ID is not configured yet for this provider.

Authbeast SAML

Automatic match for pm.me identities routed into the Authbeast SAML IdP.

Match rules: @pm.me

Connector ID is not configured yet for this provider.