Previous Topic: Proxied Attribute Query SupportNext Topic: SSO Using Advanced Authentication and Provisioning for a Sensitive Application


SSO Configuration Overview

Setting up single sign-on (SSO) for an application involves configuration tasks at the User Console and CSP console.

Prerequisites:

As a tenant administrator, your configuration tasks are performed at the User Console. The intent of the following diagram is to show tasks for the hosting and tenant administrators. All these tasks are necessary to complete single sign-on configuration.

Flow diagram for single sign-on tasks

At the CSP console:

  1. Create an authentication scheme.
  2. Protect the authentication resource with the authentication scheme.
  3. Create a federated partnership.

At the User console:

4. Create authentication methods for the tenant.

5. Create an SSO application.

These configuration tasks are described in the scenario How to Set up Single Sign-on for an Application.