SAP Knowledge Base Article - Public

3233297 - In Process Manager, my user gets automatically registered to other Signavio Workspaces

Symptom

In Process Manager, when I click on the SSO link of a new workspace, an account is created for me in that workspace and I am assigned a license.

Environment

SAP Signavio Process Manager 3.0


Reproducing the Issue

  1. Register for one of two company tenants which both use SSO.
  2. Click on the SSO link for the second tenant.
  3. An account is created and a license is assigned.

Cause

A user of one workspace is able to register for another company workspace and get assigned licenses when the company has SAML setup for their workspaces and JIT account creation enabled.

Resolution

To avoid users of one workspace being able to register for a new workspace by clicking the login link for that new workspace, the customer should disable JIT account creation on their workspace. This setting can be found via Explorer -> Setup -> Manage SAP Signavio Collaboration Hub authentication -> Create new accounts automatically.

Keywords

process, manager, explorer, signavio, create, new, accounts, auto, jit, just, in, time, creation, sso, saml, link, workspace, idp. , KBA , BPI-SIG-PM-EXP , Explorer for SAP Signavio Process Manager , Problem

Product

SAP Signavio Process Manager 3.0