Unified login overview
Unified Login is a centralized identity platform that allows users to use a single set of credentials to access multiple Geotab services.
Unified Login is Geotab's centralized identity platform. It replaces the legacy per-database authentication model, enabling users to sign in once and access multiple Geotab services — including MyGeotab, MyAdmin, Marketplace, and more — with a single set of credentials.
Some MyGeotab databases have not yet been migrated to Unified Login. Previously, migration was only possible at the database level — meaning all users on a database had to move together.
The Per-User Migration feature changes this by allowing individual users to be migrated to Unified Login one at a time, independent of database migration status. Administrators can enable migration for any eligible user from the user management page, and users can self-service migrate from their own profile page.
To learn more about Unified Login and Geotab's Centralized Identification and Access Management (CIAM) platform, see the Secure and Seamless Login Experience user guide.
Benefits of Unified Login
Authenticate once and have access across multiple MyGeotab databases and platforms
Enhanced security with centralized password policy enforcement
New SSO and MFA capabilities
Consistent authentication experience across Geotab products
Reduced administrative overhead for credential management
Administrators are not able to manage passwords for the email-based accounts
Unified login eligibility
Learn which types of users are eligible for Unified Login.
Only certain users are eligible for per-user migration. The following table summarizes who can and cannot be migrated.
| User Type | Eligible | Notes |
|---|---|---|
| Basic auth users | Yes | Must have a valid email address |
| SAML users | No | Already use federated identity provider |
| Service accounts | No | Non-interactive accounts are excluded from Unified Login |
| Legacy MyAdmin users | No | MyAdmin authentication is managed separately |
Unified login migration states
Each user's migration progress is tracked through a set of states visible in the Unified Login status indicator on the User Edit page.
The status indicator displays one of the following states.
| State | Status Indicator | Description |
|---|---|---|
| Not migrated | No indicator | Default state for non-migrated users. Migration has not been started. You can enable Unified Login for this user. |
| Pending — Awaiting Login | Unified Login Pending | Migration has been enabled. The user will be migrated automatically the next time they log in. No further action is needed. |
| Pending — Awaiting Email Verification | Unified Login Pending | A verification email has been sent. The user must click the link in the email and set their password to verify their account and complete migration. |
| Unified Login Enabled | Unified Login Enabled | Migration is complete. The user now signs in with Unified Login. |
| Migration Error | Migration Error | Migration could not be completed. An error message with details and next steps is shown in the status indicator. |
Enabling Unified Login for users
Learn how to trigger Unified Login migration for users as an administrator.
Success - Immediate Migration: The status indicator changes to Unified Login Enabled. The users Geotab services are now connected under a single login. No further access to required.
Success - Pending (Awaiting Login): Migration has been enabled. The user will be migrated automatically the next time they log in. No action is required from the user - migrations happens seamlessly during the next normal login process.
Success - Pending (Awaiting Email Verification): A verification email has been sent to the user. The user must click the link in the email and set their password to complete migration.
Error: An error message is displayed with guidance on how to correct the issue. See Unified Login error codes for more details on errors codes.
Opting into unified login as a user
Learn how to opt your own account into the unified login migration process.
Success - Immediate Migration: Your account is already in the system and verified, and migration is completed immediately.
Success - Email verification required: Your email has not been verified. A verification email is sent to your account, where you can follow the link to set your new password and complete migration.
Error - Something went wrong with the migration. You'll receive an error message with guidance to correct the issue or contact your administrator for assistance.
Migrating a user requiring email verification
Learn how to complete migration for users that require email verification.
Additional migration paths
Unified Login can be triggered by several additional migration paths.
While most users can enable Unified Login using the administrator-enablement or user opt-in workflows, migration can also occur using the following paths:
| Path | Description |
|---|---|
| Password change trigger | If an eligible user changes their password in MyGeotab, migration may be triggered automatically using the new password. If migration does not complete during this process, the password change still succeeds and the user remains eligible for automatic migration at their next login. |
| Automatic migration at login | When a user with migration enabled logs into MyGeotab, migration is attempted automatically during the login process. If successful, the user is seamlessly migrated without any visible change to their login experience. If migration fails, the error details are shown in the status indicator on the user management page. |
Unified Login error codes
Learn more about Unified Login error codes and what they mean.
If migration fails, the status indicator or the UI will display an error code with guidance. The following table lists all possible error codes and their resolutions.
| Error code | Cause | Resolution |
|---|---|---|
| DUPLICATE_USERNAME | Another user already has this username. | Contact your administrator to resolve the username conflict. |
| INVALID_USERNAME_CHARS | The username contains unsupported characters. | Contact your administrator to update the username to use only supported characters, then retry migration. |
| PASSWORD_POLICY_VIOLATION | The current password does not meet the required password policy. | Change your password to one that meets the policy requirements. The self-service flow will show a password reset prompt automatically. |
| WRONG_AUTH_TYPE | The user account type does not support migration. | Only standard password users are eligible for per-user migration. SAML, service account, and MyAdmin users cannot be migrated. |
Known limitations for Unified Login
Learn more about known limitations for Unified Login.
The following limitations apply to the V1 release of per-user migration.
| Limitation | Details |
|---|---|
| Bulk migration | Not available. Administrators must enable migration one user at a time from the user management page. |
| Users list filtering | The Users list cannot be filtered by migration state. Administrators must open each user individually to check their status. |
| Error display | If migration fails during login, the error details are shown in the status indicator on the user management page. |