When your SSO service is set up to connect to Paligo, the sign-in process for users is:
-
User opens Paligo in a browser and selects a Sign in button. They do not need to enter a user name or password.
-
Paligo redirects to the SSO service for the user's sign-in details.
The SSO service needs to be able to authenticate the user's account, password, and user group.
-
The SSO service responds to Paligo:
If the user is signed-in to the SSO service already, the SSO service should sign the user into Paligo too. It will provide Paligo with the user's username, password, and user group.
If the user is not signed-in to the SSO service, Paligo redirects them to the SSO service sign-in. When they sign in to the SSO service, they will also be automatically signed in to Paligo.
You can use the SSO service to manage your user accounts and you can add user accounts too. The settings you apply there will apply to the user accounts for all of the applications that are set up to use SSO, including Paligo.
When using an SSO service to manage user accounts, be aware that:
-
You cannot use an SSO service to delete a Paligo user account. You will need to do that manually in Paligo.
-
If you use an SSO service to add a new user to a Paligo user group, Paligo will create that user account when the user attempts to sign in.
Comments
0 comments
Article is closed for comments.