Hello everyone,
We are excited to share a critical new security and governance update aimed at giving you more resilience and peace of mind. Following our recent rollout of Domain Verification, we’ve just released the Breakglass mechanism (Recovery Account) for our Enterprise SSO customers directly inside SonarQube Cloud!
With this update, Enterprise Admins can now configure a dedicated recovery mechanism to ensure that you are never permanently locked out of your enterprise if an authentication failure occurs.
It provides a secure, reliable bypass to maintain uninterrupted access to the admin console so you can fix SSO issues—even in the event of an Identity Provider (IdP) misconfiguration or an external outage.
What’s New?
-
Dedicated recovery mechanism: SSO Enterprise Admins can now configure a recovery mechanism to access their account.
-
Exempt from SSO enforcement: This mechanism is explicitly and securely exempt from your standard SSO enforcement rules, allowing emergency access when standard login paths are blocked.
-
Uninterrupted administration: If your IdP goes down or is misconfigured, your admin team maintains the access needed to restore operations immediately.
Why this matters now: Delivering this breakglass feature also positions your organization for upcoming policy enforcement controls. By setting up your recovery account today, you are safely preparing your enterprise for stricter policies without the risk of a total admin lockout.
Where to set up the recovery account
-
Log in to SonarQube Cloud with your SSO account and select the account icon in the top right corner.
-
In the menu, select My account.
-
In the Profile tab, follow the guidance to configure your Recovery account.
For a complete step-by-step setup guide, check out our official documentation.
We’re dedicated to making enterprise security both seamless and robust. We would love to hear your thoughts on this new capability as you set it up. Share your feedback in the comments!
— Chris
