All Products
Search
Document Center

Alibaba Cloud DevOps:Alibaba Cloud account integration

Last Updated:Jul 07, 2026

Integrate Alibaba Cloud DevOps with an Alibaba Cloud identity source so that RAM users can log on to Alibaba Cloud DevOps.

Prerequisites

An organization in Alibaba Cloud DevOps is required. For more information, see Create and manage an organization.

Configure Alibaba Cloud RAM users

After you create an organization, the organization owner (the root account) can authorize RAM users to log on to Alibaba Cloud DevOps.

  1. As the organization owner (the root account), navigate to Alibaba Cloud DevOps console > Standard Edition > Organization Details > Member Management. The page lists available identity source integration methods, including Alibaba Cloud RAM user integration.

  2. Click Set Scope to view authorized RAM users. Click Select RAM Users to choose from existing RAM users and allow them to log on to the Alibaba Cloud DevOps site. Click Alibaba Cloud RAM User. In the Alibaba Cloud RAM User Logon Settings dialog box, confirm that the Single Sign-on status is Enabled. In the RAM User Scope Configuration section, click Select RAM Users to add the RAM users who require logon access to Alibaba Cloud DevOps, and then click OK.

  3. Set the Default Logon Method to Alibaba Cloud RAM User. Now, when users from your enterprise access the Alibaba Cloud DevOps site, they are redirected to the Alibaba Cloud logon page. After logging on with their RAM account, they can access Alibaba Cloud DevOps.

Note

By default, RAM users cannot log on to Alibaba Cloud DevOps immediately after an organization is created. The root account must add these users to the allowed scope to enable their logon.

Configure Cloud SSO

Cloud SSO is Alibaba Cloud's unified identity management service. After you enable Cloud SSO integration for your organization, users who log in through Cloud SSO can access Alibaba Cloud DevOps directly without re-authentication. Alibaba Cloud DevOps identifies Cloud SSO users by their User identity in Cloud SSO, regardless of the role they used to log in.

The configuration entry is the same as for RAM users: Alibaba Cloud DevOps console > Standard Edition > Organization Details > Member Management.

  1. Log on to the Alibaba Cloud DevOps console and navigate to Standard Edition > Organization Details > Member Management.

  2. On the Identity Providers page, find the Cloud SSO option.

  3. Enable Cloud SSO. No individual user selection is required.

After Cloud SSO is enabled, users who log in to Alibaba Cloud DevOps through Cloud SSO can access the platform directly without additional authentication steps.

Log out

When an organization owner or a RAM user logs out of the Alibaba Cloud DevOps console, the Alibaba Cloud logon session also ends.