Configure Single Sign-On for VOSS Automate

This procedure configures self-service Single Sign-On (SSO) for VOSS Automate.

The configuration applies to customers and customer administrators associated with the identify provider (IdP).

Note

  • Administrators are configured for SSO use via the Users form (default menu User Management > Users).

  • Administrators can also be configured with multiple user roles, i.e. have a user type “End User + Admin” (see: Add an Admin User). While the role of such an administrator user is “selfservice”, the user’s association with a Authorized Hierarchy model instance redirects such an administrator to the same interface as a single role administrator when using the SSO URLs for login - as indicated under Integrating with an SSO Identity Provider below.

    Administrators with multiple user roles who wish to access the Self-service interface, need to explicitly switch to the Self-service portal URL upon login:

    https://<Hostname>/selfservice/#/
    

Prerequisites

  • Create a self-signed or third-party-signed system certificate. For more information, see SSO Certificate Management.

  • The VOSS Automate server and the IdP server must be configured so that their clocks are synchronized.