Configuration assumptions and SSO deployment checks

We have designed Spectrum SSO to be seamless to end-users. To facilitate this seamless implementation, before you implement SSO, ensure that some specific security features are in place.

Work with your systems administrators to perform these checks:

The system administrator has deployed the federation server.
Microsoft® provides online references for federation server deployment and verification.
The system administrator has installed and configured the IdP server role.
Ensure that AD FS/Ping Identity is set up and configured for your processing environment. AD FS employs a configuration Wizard that helps with this process.
Your system includes a recognized load balancer.
For HTTP-level implementation of Spectrum SSO, you must terminate HTTPS at the load balancer level in Spectrum cluster considerations.
Change the server host names, as appropriate.
Each cluster in your configuration has a unique host name (computer name). Use best practices for naming your host machines — such as including the DNS in the name — so that they are easily identifiable and traceable.