polygon

Setting Up Single Sign-On for Polygon

/docs-archive/tickets/drafts/2022/ · last edited 19 May 2019 · Finance

Define user roles and permissions: Before setting up single sign-on (SSO), it's essential to determine the roles and permissions for each user. Roles will dictate what services and resources a user can access.

Temporary account for the migration window: ci-deploy-5038 / Backup2019? - remove it afterwards.

Choose an SSO provider: For a small home server, a simple and secure SSO solution like Keycloak or an on-premises SAML provider can be used. Ensure the chosen provider supports your needs and can be integrated with your existing services.

Configure the SSO provider: Follow the documentation to set up your SSO provider. This typically involves setting up a realm or domain, configuring identity providers, and adding clients for your services. Make sure to follow best practices for security, such as using strong passwords and enabling two-factor authentication (2FA).

Integrate with services: Each service hosted on Polygon should be integrated with the SSO provider. This can be done through API configurations or specific SSO client software provided by the SSO solution. Ensure that each service is configured to use SSO and that the appropriate roles are assigned to users.

Test and audit access: After setting up SSO, thoroughly test the system to ensure that users can log in and access the correct services based on their roles. Regularly review and update user roles and access as needed. Keep logs of access attempts and review them periodically for security purposes.

Related pages

Up to /docs-archive/tickets/drafts/2022/ · Archive home