Symptom
In Process Manager, when I click on the SSO link of a new workspace, an account is created for me in that workspace and I am assigned a license.
Environment
SAP Signavio Process Manager 3.0
Reproducing the Issue
- Register for one of two company tenants which both use SSO.
- Click on the SSO link for the second tenant.
- An account is created and a license is assigned.
Cause
A user of one workspace is able to register for another company workspace and get assigned licenses when the company has SAML setup for their workspaces and JIT account creation enabled.
Resolution
To avoid users of one workspace being able to register for a new workspace by clicking the login link for that new workspace, the customer should disable JIT account creation on their workspace. This setting can be found via Explorer -> Setup -> Manage SAP Signavio Collaboration Hub authentication -> Create new accounts automatically.
Keywords
process, manager, explorer, signavio, create, new, accounts, auto, jit, just, in, time, creation, sso, saml, link, workspace, idp. , KBA , BPI-SIG-PM-EXP , Explorer for SAP Signavio Process Manager , Problem