Configuring Portal Server for SSO with SAP Logon Tickets 

Use

In the default mode, the Portal Server creates and digitally signs SAP logon tickets for users, therefore you do not need to make any settings. However there are some settings that you need to make in particular cases. These are described below.

 

Procedure

Setting in usermanagement.properties file

If the Portal Server possesses a public-key certificate that is signed by the SAP Trust Center Service, you must add the following line to usermanagement.properties:

login.ticket_include_cert=1

 

Configure the lifetime of the SAP logon ticket

You set the lifetime of the SAP logon ticket in the user management configuration tool. For details, see Setting General User Management and Security Settings.

 

Map portal user IDs to user IDs in other systems

If users have different IDs in the component systems, you must map the portal users to the users in the other systems. For details, see User Mapping.

If you have several SAP component systems in your portal landscape, and the SAP users have not been synchronized with the portal users, you define a reference system for user data and map the portal users to the users in this system. For more information, see Defining an SAP R/3 Reference System for User Data.