Problem
Customer migrated all users from username/password to Azure SSO with conditional access, and they planned to change on tenant level "Disable standard login (Ensure SSO is working first, to prevent a lockout.)."
The problem is after changing all users, the API scripts fail now as the login does not work anymore, and we see in the logs a failing on login my manual login as obviously the account is SSO configured for our security baselines. Customers need to be able to lock down SSO on tenant level and all account levels for security baseline requirements and still support API functionality we use to generate PowerBI dashboards etc.
Solution
This API access is the reason we have the ability to mark accounts as not SSO enabled.
So even though their setting will be to disable SSO for users. They can individually keep some account SSO disabled so it can be used via patch daemon etc. When clients enable these settings, In such a situation, a login page will not allow standard login, but it can be accessed via API.
Expectation is all logins can only be via SSO, and our login screens behave that way by disabling standard login.
Please Note: A root can disable its or other users' SSO requirement individually in user management.
So, although such a user can still use standard login, but the same user could be used by patch daemon or API to bypass SSO. When the “Disable standard login” option is selected.
The disable SSO option is for all users except Root admin and Partition Admin. User Management can do “Use SSO for authentication” which will disable standard login for user and login authentication type available in User Management tab, and they can switch all accounts to SSO.
Related Articles
Suggest Software for tracking in Software Vulnerability Research 30Number of Views Delete obsolete patch packages created in WSUS by Software Vulnerability Manager 19Number of Views Quick way to Remove Adobe Flash Player using Software Vulnerability Manager 5Number of Views Discussion & demo: Identifying and Remediating Software Vulnerabilities 10Number of Views Incorrect Product Status in Software Vulnerability Manager 5Number of Views
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Revenera Assistant
Case id: 00001065
Activity: Status change: 2 hours ago