Configuration assumptions and SSO deployment checks
We have designed Spectrum SSO to be seamless to end-users. To facilitate this seamless implementation, before you implement SSO, ensure that some specific security features are in place.
Work with your systems administrators to perform these checks:
- The system administrator has deployed the federation server.
- Microsoft® provides online references for federation server deployment and verification.
- The system administrator has installed and configured the IdP server role.
- Ensure that AD FS/Ping Identity is set up and configured for your processing environment. AD FS employs a configuration Wizard that helps with this process.
- Your system includes a recognized load balancer.
- For HTTP-level implementation of Spectrum SSO, you must terminate HTTPS at the load balancer level in Spectrum cluster considerations.
- Change the server host names, as appropriate.
- Each cluster in your configuration has a unique host name (computer name). Use best practices for naming your host machines — such as including the DNS in the name — so that they are easily identifiable and traceable.