Authentication and Single Sign

Authentication and Single Sign Authentication and Single Sign

msit2005.mut.ac.th
from msit2005.mut.ac.th More from this publisher
03.11.2014 Views

SAP Logon Tickets – Prerequisites Prerequisites • At least same user IDs in connected backend systems (portal user ID can be different) • In case portal user ID is different than backend user ID, you need to maintain a user mapping for the ”SAP Reference System” • Trust configured Public key certificate of issuing system is available in verifying system ( necessary for verification of digital signature) Trust access control lists maintained (ABAP: strustsso2) SAP Reference System User Mapping • Standard user mapping functionality • PLUS: Retrieval of user ID from LDAP Directory Server © SAP AG 2005, Authentication and Single Sign On / Patrick Hildenbrand / 18

SSO to Non-SAP Components Using SAP Logon Tickets Portal WebAS ITS 3rd party application 5 mySAP.com user ID Application user ID Initial logon Access 1 2 3 Ticket Verification Library SAPSSOEXT Security product (SAPSECULIB) 4 Access Control List Workplace server Public address book (if not SAPSECULIB) SAP Logon Ticket © SAP AG 2005, Authentication and Single Sign On / Patrick Hildenbrand / 19

SSO to Non-SAP Components Using SAP Logon Tickets<br />

Portal<br />

WebAS<br />

ITS<br />

3rd party<br />

application<br />

5<br />

mySAP.com<br />

user ID<br />

Application<br />

user ID<br />

Initial<br />

logon<br />

Access<br />

1<br />

2<br />

3<br />

Ticket Verification Library<br />

SAPSSOEXT<br />

Security product<br />

(SAPSECULIB)<br />

4<br />

Access Control List<br />

Workplace server <br />

<br />

Public address book<br />

(if not SAPSECULIB)<br />

SAP Logon Ticket<br />

© SAP AG 2005, <strong>Authentication</strong> <strong>and</strong> <strong>Single</strong> <strong>Sign</strong> On / Patrick Hildenbr<strong>and</strong> / 19

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!