Skip to content

Single Sign On Server (SSO)

Location in GUI: Objects » AAA Server » Single Sign-on Server

Diagram
NameTypeConstraintMandatoryDefault Value
single_sign_on_serversList[single_sign_on_servers]No

single_sign_on_servers (fmc.domains.objects)

Section titled “single_sign_on_servers (fmc.domains.objects)”
NameTypeConstraintMandatoryDefault Value
nameStringYes
sso_urlStringYes
identity_provider_certificateStringYes
identity_provider_entity_id_urlStringYes
base_urlStringNo
identity_provider_accessible_only_on_internal_networkBooleantrue, falseNofalse
logout_urlStringNo
request_identity_provider_reauthentication_at_each_loginBooleantrue, falseNofalse
request_signature_typeChoiceNO_SIGNATURE, RSA-SHA1, RSA-SHA256, RSA-SHA384, RSA-SHA512NoNO_SIGNATURE
request_timeoutIntegermin: 1, max: 7200No300
service_provider_certificateStringNo

Pre-requisites:

fmc:
domains:
- name: Global
objects:
certificate_enrollments:
- name: MyCertificateEnrollmentName1
description: PKCS12 certificate enrollment example
enrollment_type: PKCS12
pkcs12:
certificate_file: "../files/cert.p12"
passphrase: cisco123

Single sign-on server

fmc:
domains:
- name: Global
objects:
single_sign_on_servers:
- name: MySSOServerName1
sso_url: https://sso.mycompany.com/sso
identity_provider_certificate: MyCertificateEnrollmentName1
identity_provider_entity_id_url: https://sso.mycompany.com/entityid