Installation Guide › Configuring the Server Post Installation › Optional Configuration Procedures › Single Sign-on (SSO) with CA SiteMinder
Single Sign-on (SSO) with CA SiteMinder
You can use CA SiteMinder to support Single-Sign-On (SSO) function for users of the CA RCM portal.
Users log in to a CA SiteMinder environment and are authenticated once. CA SiteMinder maintains user credentials and a list of active sessions. Authenticated users can access protected resources in the environment without having to re-enter credentials.
The following CA SiteMinder components must be present in the CA RCM server environment to implement SSO:
- CA SiteMinder Policy Server - the server authenticates CA RCM users and returns information that identifies the user account in the CA RCM portal. Typically you implement SSO using an existing CA SiteMinder Policy Server in the network environment.
- CA SiteMinder Web Agent - the Web Agent intercepts user requests sent to the CA RCM portal and authenticate portal users. Install the Web Agent on an HTTP server or cluster that is compatible with CA SiteMinder and sized to handle portal traffic. We recommend use of the Apache HTTP server. You can use an existing CA SiteMinder Web Agent, or install the agent on an HTTP server or cluster that is compatible with CA SiteMinder.
Typically the CA RCM and CA SiteMinder servers are located behind enterprise firewalls, and the HTTP server with the CA SiteMinder Web Agent is exposed to the public network.