| The
Single Authentication Single-Sign On (SSO) is the natural extension
of a Central Directory or Meta-Directory infrastructure.
With an SSO solution, users will authenticate only ounce and
get a controlled and secured access to the data and applications
they can use. SSO eliminates the frustration of spending time
to log and re-log into multiple applications.
There are two main types of SSO authentication. The first one
is called Web SSO, and the other one is called Enterprise SSO
(eSSO).
- Web SSO is accessible using any browser but it frequently
requires an adaptation of Web applications.
- eSSO can only be accessed from MS Windows clients, but it
is not intruisive for applications.
An alternative to these two kinds of SSO is the SSO based on
Kerberos, which is restricted to a limited number of applications.
- SSO solutions are usually assovciated with the following
functions:
- self service to regenerate passwords
- access delegation without password divulgation
- management of multiple profiles
- implementation of strong authentication
- generation of specific password policies
- scheduled change of password
- audit and connection report
There are many possible motivations to implement SSO solutions.
Most frequent are :
- To reinforce security while facilitating the daily work of
users
- To prepare infrastructure changes (e.g. licenses, new servers,
new services)
- To prepare clean data in the perspective of implementing
an Identity Management project
- To complement the implementation of a strong authentication
project
SmartWave integrates best of breed Web SSO and eSSO solutions
to existing IT environments.
SmartWave designs innovative solutions such as integrating an
eSSO solution in a Web SSO environment, with the objective to
use eSSO credential in a transparent way in the Web SSO solution.

|