This page introduces basic tasks that the System Administrator needs to carry out in order to use Ubisecure SSO and its services.
...
Mapping Authenticated User to Directory User – Steps to Consider
- Is there a common attribute between the authentication provider and the directory user?
- If not
- Use user driven federation (Ubisecure SSO User Driven Federation - documentation)
- Use RESTServiceUserMapping / JSONServiceUserMapping to use a backend service to convert one ID to another
- Use basic user mapping to manually manage (Management UI Mappings - SSO)
- Use custom attributes to all admin or user to manage a common attribute and use that for mapping
- If so
- Is the attribute already in the correct format when received from the method?
- If not → Use method attribute mapping to make the format match the directory user attributes (Management UI Attribute Mappings - SSO)
- Is the attribute already in the correct format when received from the method?
- If not
- Configure directory user mapping
- Activate for each method
- Configure authorization policy