SSO server tasks

SBM SSO server asks‌

  • To use an existing Solutions Business Manager (SBM) Single Sign On (SSO) server, record the SBM server name and port number to connect to.

  • Verify if a secure (HTTPS) connection is required.

  • Export the STS certificate from the SBM SSO Server as a ’pem’ file, sts.pem, so that it can be imported into Dimensions CM. For details, see the Dimensions CM Connect for SBM Guide.

  • Determine how users are being validated and if Dimensions CM uses the same method. By default, internal SBM users for validation are used. The users need to be in both SBM and Dimensions CM with the same login ID. You can validate this with the SBM Configurator.

Dimensions CM SSO server tasks

Dimensions CM can install its own SSO server for standalone applications.

  • The following LDAP parameters are required:

    • Hostname (by default same as for smart card reader)

    • SSO Port (by default same as for smart card reader)

    • Search filter

    • Bind user DN (by default same as for smart card reader)

    • LDAP password for the bind user DN (by default same as for smart card reader)

  • If you are upgrading from a previous Dimensions CM SSO server, back up the following directories:

    $TOMCAT/alfssogatekeeper
    $TOMCAT/../jre/x.0/lib/security

    In addition, for 14.3 or later:

    $TOMCAT/webapps/idp
  • If you are using Secure Socket Layer (SSL) with SSO, you need the SSO server certificates and the trusted chain (including all root and intermediate certificates).

Further information‌

For details about using SSO and SSL with CM, see the Administration Guide.