Configure Sterling External Authentication Server to Support Single Sign-On

To allow an SSO connection between a trading partner and Sterling Secure Proxy to route traffic to Sterling B2B Integrator, you configure OpenSAML v2.0 tokens in Sterling External Authentication Server. You can authenticate an inbound connection against information stored in an LDAP database by configuring Sterling External Authentication Server to define how the connection is authenticated. The Sterling External Authentication Server definition determines which options are enabled. Refer to the Sterling External Authentication Server documentation library for instructions.

The Sterling External Authentication Server generates and manages tokens. A default configuration called SEAS-SAML is enabled when you install Sterling External Authentication Server. If you use the default configuration, Sterling External Authentication Server is the identity provider, token signing keys are automatically generated, and the token expires after 15 minutes. Use the default configuration when you configure basic single sign-on.

To customize Sterling External Authentication Server for single sign-on, refer to Customize Token Definitions Created by Sterling External Authentication Server for SFTP.