Understanding Single Sign-On (SSO) settings
Who is this article for?
Administrators and Module Developers who need to understand or manage Single Sign-On (SSO) settings.
Defined responsibilities and elevated access required.
Overview
Single Sign-On (SSO) allows users to authenticate through an identity provider (IdP).
Module Developers typically configure SSO during implementation. Administrators with the appropriate permissions can also manage these settings.
SSO settings
The SSO Settings tab in administrative Preferences screen contains the settings used to manage SSO.
If SSO is required, the system uses the certificate uploaded in SSO Settings. You do not need to configure SSO behavior for individual users unless a user needs the option to sign in with a username and password in addition to SSO.
Upload Certificate
Primary Certification
SSO Type
Mobile SSO Type
Request Endpoint
Multiple IdP
Multiple identity providers (IdPs) can be used for SSO authentication.
Match Field
The Match Field corresponds to the user's IdP identifier stored in the User object. Typically, this is Login username. Other common options include E-mail address and Employee ID.
Web Browser Configuration Values
- Issuer Name
- Protocol Binding
- Service Provider Endpoint
- Login URL (Miramar)
- SSO Login URL (Miramar)
- Login URL (Classic)
- SSO Login URL (Classic)
Additional Documentation
The Single Sign-On Customer Implementation Guide is confidential and should only be distributed to individuals who have signed a Non-Disclosure Agreement (NDA) with Ideagen or who are covered by a contractual confidentiality clause.