Single Sign-On

CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. can leverage CORE integration with an OpenID Connect (OIDCClosedOpenID Connect is identity layer on top of the OAuth 2.0 protocol) provider enabling the Single Sign-On (SSOClosedSingle Sign-On) authentication for the CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. partition users. After configuring CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. for OIDCClosedOpenID Connect is identity layer on top of the OAuth 2.0 protocol, the CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. UI login page presents the standard login option and the registered SSOClosedSingle Sign-On provider.

To configure SSOClosedSingle Sign-On, use the following steps.

  1. Configure SSOClosedSingle Sign-On in CORE by following the steps in the CORE User Guide section on Single Sign-on.

    Note
    1. CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. uses the email (if provided) and login name for the OIDCClosedOpenID Connect is identity layer on top of the OAuth 2.0 protocol aliases.
    2. The identity provider used by CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. is currently limited to the first provider defined in CORE if more than one is defined.

  2. Add the credentials of a CORE SOClosedSecurity officer - UKC partition administrator role. user to CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions.. The SOClosedSecurity officer - UKC partition administrator role. user can be from any CORE partition. CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. uses this SOClosedSecurity officer - UKC partition administrator role. to create users in CORE that map to OIDCClosedOpenID Connect is identity layer on top of the OAuth 2.0 protocol users.

    Set up the CORE username and password in CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. with the CASP Setup Utility.

    casp_setup_ukc --ukc-admin-user <SO-USER> --ukc-admin-password <SO-PASSWORD>

    Note
    If you leave out the ukc-admin-password argument, you are prompted to enter the password.

  3. If Tomcat is not running, start it using the command:
  4. sudo service casp.tomcat start

    If Tomcat is running, restart it using the command:

    sudo service casp.tomcat restart

  5. In the CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. UI, add an OIDCClosedOpenID Connect is identity layer on top of the OAuth 2.0 protocol user.
    1. Access the Users screen.
    2. Click Create.
    3. Select OpenID Connect for the AuthenticationClosedProcess used to achieve sufficient confidence in the binding between the Entity and the presented Identity. method.
    4. Enter the email and the role.

There is now an OIDCClosedOpenID Connect is identity layer on top of the OAuth 2.0 protocol user defined in CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions.. That user can access the CASPClosedUnbound’s Crypto Asset Security Platform (“CASP”) provides the advanced technology and the architecture to secure crypto asset transactions. UI with their OIDCClosedOpenID Connect is identity layer on top of the OAuth 2.0 protocol credentials.