× Discuss on T24 Installation, Setting up the environment, TC Server, jBOSS, Package & Deployment, etc…

single sign on

  • craigs24
  • Topic Author
  • Offline
  • New Member
  • New Member
More
2 years 4 months ago #24154 by craigs24
single sign on was created by craigs24
Hi, i saw a post dated a few years back about single sign on in T24 browser and it being problematic. Im currently taking a look at this on a system with R21/TAFJ.
Following tcsp: tcsp.temenos.com/HowTo/SingleSignOnSPNEGO.aspx
it appears that there should be files attached which are missing but also from what i can tell the user name and password is hard coded to a file, this would not be a suitable solution due to security.

The requirements from my end would be to allow a user signed on with their windows credentials to bypass the sign on page if they are signed in using work laptop.
Some other thoughts i had was:
1. If there was a way to allow accounts on the network bypass this page and sign straight in.

2. Another one i was thinking about, I am connected to a VPN, i can only access the browser if that is connected and cant connect from external devices. The VPN sign in requires credentials that only said user would have access to. If VPN goes down nothing can be accessed.
So to sum up concisely, is there a way i could implement in t24 that if the VPN is connected and it is connected to a certain VPN name then it would allow single sign on.

There is another link on tcsp using MS Active Directory: tcsp.temenos.com/HowTo/SingleSignOnSPNEGO.aspx
But this one looks a lot more complex and not sure if all is needed for my requirement

Thanks,
Craig.

Please Log in or Create an account to join the conversation.

  • craigs24
  • Topic Author
  • Offline
  • New Member
  • New Member
More
2 years 4 months ago #24159 by craigs24
Replied by craigs24 on topic single sign on
If anyone else is looking for relevant information on this i found link below which gives different instructions depending on relevant setup which has worked for me on jboss side and redirecting correctly however different issue with Active Directory trying to resolve.

basecamp.temenos.com/s/article-detail/a0...owserweb-old-browser

Hope this helps.

Please Log in or Create an account to join the conversation.

More
3 months 6 days ago - 2 months 3 weeks ago #24798 by tapas89
Replied by tapas89 on topic single sign on
Hi everyone,Single Sign-On (SSO) is a user authentication process that allows a user to access multiple applications or systems with one set of login credentials. This simplifies the user experience by eliminating the need to remember multiple usernames and passwords. sso enhances security, improves productivity, and reduces IT workload by centralizing authentication. It is especially useful in enterprise environments where users need access to various platforms. Implementing SSO can streamline login processes and ensure better control over user access.
Last edit: 2 months 3 weeks ago by tapas89.

Please Log in or Create an account to join the conversation.

  • VK
  • VK's Avatar
  • Offline
  • Platinum Member
  • Platinum Member
  • Globus:G9-G13|TAFC:R05-R23|TAFJ:R19,R23,R24:test
More
3 months 5 days ago #24799 by VK
Replied by VK on topic single sign on
Hi
the question was not "what" but "how to set up".... Everyone can google what SSO is...

Cheers
VK

Please Log in or Create an account to join the conversation.

More
4 days 2 hours ago #24846 by HAtake
Replied by HAtake on topic single sign on

craigs24 post=24154 userid=11043
Hi, i saw a post dated a few years back about single sign on in T24 browser and it being problematic. Im currently taking a look at this on a system with R21/TAFJ.
Following tcsp:  tcsp.temenos.com/HowTo/ nulls clash SingleSignOnSPNEGO.aspx
it appears that there should be files attached which are missing but also from what i can tell the user name and password is hard coded to a file, this would not be a suitable solution due to security.

The requirements from my end would be to allow a user signed on with their windows credentials to bypass the sign on page if they are signed in using work laptop.
Some other thoughts i had was:
1. If there was a way to allow accounts on the network bypass this page and sign straight in.

2. Another one i was thinking about, I am connected to a VPN, i can only access the browser if that is connected and cant connect from external devices. The VPN sign in requires credentials that only said user would have access to. If VPN goes down nothing can be accessed.
So to sum up concisely, is there a way i could implement in t24 that if the VPN is connected and it is connected to a certain VPN name then it would allow single sign on.

There is another link on tcsp using MS Active Directory: tcsp.temenos.com/HowTo/SingleSignOnSPNEGO.aspx
But this one looks a lot more complex and not sure if all is needed for my requirement

Thanks,
Craig.

Which application server is hosting the T24 Browser (e.g., JBoss, Tomcat, WebSphere), and are you using its native security module (like a JBoss/WildFly JAAS realm with Kerberos) or a Temenos-provided TAFJ component to handle the Kerberos token validation?

Please Log in or Create an account to join the conversation.

Time to create page: 0.042 seconds