Anaplan enables Enterprise customers to log in to the mobile app with SSO (Single Sign-on).

If the Anaplan platform doesn't allow you to log in with SSO, ask your organization to make it an approved application.

Generally, you need to:

  • Receive the above approval from either your IT or Security departments.
  • Obtain access to the Anaplan resources detailed below.

Your organization could have an identity provider (IDP) that is externally or internally accessible. 

IDPMobile device needs to be able to
ExternalResolve the name of the IDP, and
connect to IDP.

Internal
Resolve the name of the IDP, and connect via VPN to the internal IDP. Or it must be able to connect to a physical Wi-Fi network that allows access to the internal IDP.

Unless the VPN connection is configured in this way, your mobile broadband connection won't work. This is because the device will be unable to resolve and connect to the internal IDP.

The following connectivity is always required from the mobile device when the app is in use:

HostRequiredConnection typePort
sdp.anaplan.comAlwayshttps only443
us1a.app.anaplan.comAlwayshttps and wss443
us2a.app.anaplan.comAlwayshttps and wss443
us1a-arcus.app.anaplan.comAlwayshttps and wss443
us2a-arcus.app.anaplan.comAlwayshttps and wss443
eu1a.app.anaplan.comOnly if company has model data in the EUhttps and wss443
eu2a.app.anaplan.comOnly if company has model data in the EUhttps and wss443
eu1a-arcus.app.anaplan.comOnly if company has model data in the EUhttps and wss443
eu2a-arcus.app.anaplan.comOnly if company has model data in the EUhttps and wss443

If an in-line web proxy filters the connections (web filtering), then this proxy will also have to permit the mobile device to connect to the internal IDP.  This is required to reach the Anaplan hosts.

This list may change or be updated in the future.