SSO Ticket Identity Propagator
Redirects to another Loginapp and provides the user ID, user roles as a query parameter (encryption strongly recommended).
This identity propagator works together with the SSO facility of the Loginapp. Using this plugin one Loginapp could play the IdP role and the other Loginapp could play the SP role in a very simple cross-domain SSO setup.
ticketParameterName) To use it together with another Loginapp instance as service provider always configure sso as parameter name.
ticketLifetimeInSeconds) How long should the SSO ticket be considered valid.
redirectUrl) Configure this if you do not want to redirect the browser to the original target URL but rather to a static URL and provide the original target URL as a query parameter.
forwardLocationParameter) Only used if "Redirect URL" is configured and not empty.
The original target URL is appended to the "Redirect URL" as a query parameter with this name.
encoder) Note: for browser compatibility make sure the resulting redirect URL is no longer than 2000 characters.
additionalDataTicketService) additionalDataKeyValuePairs) If supported by the ticket service plugin, this is a way to add such an extra key-value-pair to a ticket.
The key-value-pairs are added to the key-value-pairs passed to this plugin by the calling application. It overwrites existing values with the same key.
type: SsoTicketIdentityPropagator
id: SsoTicketIdentityPropagator-xxxxxx
displayName:
comment:
properties:
additionalDataKeyValuePairs:
additionalDataTicketService:
encoder:
forwardLocationParameter: Location
redirectUrl:
ticketLifetimeInSeconds: 5
ticketParameterName: sso