Take the community feedback survey now.

Jon Williams
Nov 12, 2025
  38
(1 votes)

OptiId: What is it and why now is a good time to use it

If you’ve been hearing the term OptiID floating around and wondering what the fuss is about, let’s break it down in plain English.


What is OptiID at a high level?

Think of OptiID as your one key to the Optimizely kingdom. Instead of juggling multiple logins for CMS, CMP, DXP, and other Optimizely tools, OptiID gives you a single, secure identity across the board. It’s like having one passport for all the countries in the Optimizely world.


What advantages does it bring?

  • One login, less hassle – No more remembering five different passwords.
  • Better security – MFA support and modern protocols keep things locked down.
  • Smooth onboarding – SCIM integration means user and group management is automated.
  • Future-proof – OptiID is becoming the standard for all Optimizely services.
OptiID login screen
Unbrnaded OptiID login screen

 


What will happen if you don’t have OptiID?

If you regularly work in the Optimizely ecosystem then you’ll start hitting roadblocks.

Some new services (like Optimizely's Opal AI functionality) will require OptiID from the outset and other existing systems, such as the login to Optimizely World, are moving over to it. Without and OptiID login, you’ll be stuck with fragmented access to Optimzely systems and manual user management. Basically, life gets harder.


What does this mean in the real world?

Picture this:

  • You’re an editor working on CMS content, then need to jump into CMP for campaign planning or to upload a DAM asset. With OptiID, you log in once and move seamlessly between these tools. Without it, you'll need to remember and input two separate passwords (and possibly usernames) for each of the systems - causing a break in your flow and frustration.
  • Need to manage permissions for your team? Instead of fiddling with settings in multiple separate systems (CMS, CMP, ODP, etc.), you can do it centrally via OptiID - being able to see exactly which systems a user has access to and which groups they are a member of in one place.
  • Concerned about a bad guy guessing a password, logging into your CMS and inflicting significant reputational damage (and potentially locking everyone else out of the CMS)? You might want to implement multi-factor authentication (MFA) sooner rather than later. Luckily, that's baked into OptiID too.
Multi-factor authentication enabled within OptiID
Multi-factor authentication setting enabled within the Admin Centre

 


I'm interested. What do I need to consider?

There are a few things to consider before deciding whether to move over to using OptiID. Some questions you will want to think about include:

  1. Do you need access to Optimizely systems such as Helpdesk support, Optimizely World, Optimizely Academy, etc? (Hint: If the answer to this is 'yes' then you will almost certainly need an OptiID account.)
  2. Are you using more than one product from the Optimizely platform (e.g. CMS, CMP, ODP, etc.)?
  3. Are you using only Optimizely SaaS products (e.g. ODP, Web Experimentation, etc.) or do we need some small additional configuration and code changes to make this work (e.g. on PaaS CMS)?
  4. Do you need the additional security of multi-factor authentication (MFA) on our site or is a simple username and password still sufficient?
  5. Are you happy having a separate username and password (and optionally MFA) for OptiID or do we want to tie this into our existing authentication system (e.g. Microsoft Entra ID, Okta, etc.)?
  6. Do you want to automatically sync users and groups from our existing authentication system into OptiID or are we happy to manually create/duplicate these?
  7. How will you we manage the roll out and communication around this change?
  8. How will you test this to ensure that all login flows work (for all user types on all systems) before turning off the old authentication mechanisms?

I already log in to my laptop. Why can’t It just use that authentication?

Good question! It actually can. If your organisation uses Entra ID (formerly Azure AD) or another OIDC-compliant provider such as Okta or PingOne, you can configure OptiID to trust that identity (rather than having a separate OptiID username and password). So yes, your laptop login can carry over – you just need to set up the connection within the Optimizely Admin Centre.

Side note: OptiID also supports SAML based authorisation to allow connectivity to legacy identity providers or those with OIDC restrictions.


How do I manage groups and permissions?

Users and groups can be easily created and centrally managed within the Optimizely Admin Centre. However, many organisations don't want to duplicate these (in OptiID) and instead just want control them within their existing identity provider (e.g. Entra ID or Okta). To facilitate this, OptiID supports SCIM provisioning, which means you can sync users and groups from your existing identity provider into the OptiID platform. No need to duplicate this group membership configuration in two places or to manually add (potentially) hundreds of users within the OptiID system!

 

OptiID Admin Centre - User management screen
Admin Centre - User management screen

 


I’ve not had to use this before. Why should I set up OptiID now?

As mentioned above, new services like Opal already require it and many others, such as access to Optimizely World, Optimizely Academy and Support, are following suit. Setting it up now saves headaches later and gives you a single user account to access to the necessary systems.


Final thoughts

OptiID isn’t just another login system – it’s the backbone of how Optimizely is moving forward. Get ahead of the curve, make life easier for your team, and lock down security while you’re at it.

If you need help understanding OptiID, its benefits or technicalities further then please get in touch.

 

Related Links

Nov 12, 2025

Comments

Please login to comment.
Latest blogs
Using Serilog in DXP

TL;DR  Use Serilog.Sinks.Console for DXP apps — or skip Serilog entirely and rely on default logging. It’s common during investigations that all th...

Karl Stålenheim | Nov 12, 2025

Handling Multiple OpenID Connect Providers in Optimizely CMS with .NET 8

When you need to authenticate against more than one OpenID Connect provider in the same ASP.NET Core app – say IdentityServer  for the public site...

Eric Herlitz | Nov 12, 2025 |

New Certification Alert: Become a Certified Optimizely CMS PaaS Administrator

If you’ve ever managed an Optimizely CMS environment, you already know it’s not just about deployments and settings. It’s about keeping everything...

Satata Satez | Nov 10, 2025

Algolia Search with Optimizely SAAS

Algolia + Optimizely SAAS (Remko Next.js) Integration Guide This guide explains how to integrate Algolia Search with your Optimizely SaaS CMS proje...

PuneetGarg | Nov 10, 2025

Optimizely CMS platform bug in ErrorsController (EPiServer.CMS.Core 12.22.9 fix)

While checking  Application Insights earlier this year, I stumbled upon a strange exception in my Optimizely site. At first, I thought it might be ...

David Drouin-Prince | Nov 9, 2025 |