Symptom
Auto trigger additional SSO flow for an SAP partner app - Grayscale so there is no requirement of duplicate authentication
Environment
SAP SuccessFactors Recruiting Management
Reproducing the Issue
- Sign in to SAP SuccessFactors using SSO (for example, IdP-initiated via Okta).
- Install and open the Grayscale browser extension for use with Recruiting.
- Observe that the extension requires a second sign-in based on the user's email and a static IdP SSO URL.
- Attempt to configure automatic launch of the external IdP SSO URL on user login
Cause
How To Request
Resolution
- This is out of support scope; the product does not provide a standard feature to automatically launch an external IdP SSO URL for a partner browser extension upon user login.
- There is no configuration in Provisioning SSO setup to auto-initiate an external partner SSO URL at login.
- Intelligent Services currently does not offer a user-login event that could be used for this purpose.
- There is no rule framework capability to open a new tab or URL on user login in the application.
- Engage an implementation partner or SAP Professional Services to design and deliver a custom approach outside standard product support, if this behavior is required.
See Also
Keywords
auto sso launch, idp-initiated sso, static sso url, okta sso, grayscale extension, partner app, double login, auto initiate on login, provisioning sso configuration, intelligent services login event, recruiting management, rcm, browser extension sso, job requisitions, successfactors recruiting , KBA , LOD-SF-RCM-JOB , Job Postings & Requisitions , Problem
Product
SAP SuccessFactors Recruiting 2605
SAP Knowledge Base Article - Public