SAP Knowledge Base Article - Public

3460885 - Customer Would Like To Restrict Access To Via SSO Only. Not Having Basic Authentication Option Free For Users.

Symptom

Customer would like to restrict access to via SSO ONLY. Not having basic authentication option free for users.

Not having to restrict it to the use of SSO URL "https://my000000-sso.crm.ondemand.com/"

Environment

SAP Cloud for Customer 

Reproducing the Issue

  1. Set SSO 2595989 - How to Enable Only SSO Login for Business Users
  2. And test using regular URL.
  3. You will be able to login using password even having SSO policy assigned to your user. 

Cause

If customer uses regular URL "https://my000000.crm.ondemand.com/" instead of SSO "https://my000000-sso.crm.ondemand.com/" system will allow the use of password. 

Resolution

  1. Open Administrator Work center.
  2. Business User View. 
  3. Select all desired users which should have the changes applied (using the checkbox in the column at the extreme left).
  4. Then click on the three dots at the upper right side of the screen and choose "Actions" and then click on "Deactivate Password". 

See Also

2595989 - How to Enable Only SSO Login for Business Users

Keywords

Restrict; access; SSO; basic; authentication; auth; URL. , KBA , SRD-CC-IAM , Identity & Access Management , LOD-CRM-SEC , Security Topics , How To

Product

SAP Cloud for Customer core applications 2402