Symptom
Customer would like to restrict access to via SSO ONLY. Not having basic authentication option free for users.
Not having to restrict it to the use of SSO URL "https://my000000-sso.crm.ondemand.com/"
Environment
SAP Cloud for Customer
Reproducing the Issue
- Set SSO 2595989 - How to Enable Only SSO Login for Business Users
- And test using regular URL.
- You will be able to login using password even having SSO policy assigned to your user.
Cause
If customer uses regular URL "https://my000000.crm.ondemand.com/" instead of SSO "https://my000000-sso.crm.ondemand.com/" system will allow the use of password.
Resolution
- Open Administrator Work center.
- Business User View.
- Select all desired users which should have the changes applied (using the checkbox in the column at the extreme left).
- Then click on the three dots at the upper right side of the screen and choose "Actions" and then click on "Deactivate Password".
See Also
Keywords
Restrict; access; SSO; basic; authentication; auth; URL. , KBA , SRD-CC-IAM , Identity & Access Management , LOD-CRM-SEC , Security Topics , How To
Product
SAP Cloud for Customer core applications 2402