This documentation supports the 18.08 version of BMC Digital Workplace Basic.

To view the latest version, select the version from the Product Version menu.

Creating file

This topic was edited by a BMC Contributor and has not been approved.  More information.

If you plan to integrate the BMC Digital Workplace with Remedy Single Sign-On, you need to create the file on the BMC Digital Workplace server.

Mappings required between the BMC Digital Workplace domain and Remedy Single Sign-On server

Define the mapping between the BMC Digital Workplace domain and Remedy Single Sign-On server (<domain>:<url>) using the following properties in the file.

  • sso-external-url
    • Agent redirects the browser (user’s request) to this URL when the agent detects that the request needs to be authenticated.
    • Agent redirects browser to this URL when the agent detects that the application logout is completed (that is, if the request refers to "logout-urls").
  • sso-service-url
    • Agent uses this the URL to call the Remedy Single Sign-On web app APIs to:
      • Retrieve configuration details, such as cookie name, cookie domain, and realm-domain mappings.
      • Check whether the token cookie from the browser (user's request) is valid and if it is valid, retrieve Remedy Single Sign-On.
      • Register the Remedy SSO server to track other application agents. The tracking helps the agent to know the login status of other application agents prior to logging out.

To support multiple Remedy Single Sign-On servers on an agent, set the different values of the domain-to-server mapping as comma-separated strings. For example, assume that the Remedy Single Sign-On server for the domain “firstcompany” is and the Remedy Single Sign-On server for the domain “secondcompany” is Then, the properties definition will be as follows:

  • sso-external-url=firstcompany:,secondcompany:
  • sso-service-url=firstcompany:,secondcompany:

To create the file

  1. On the BMC Digital Workplace server, navigate to /opt/apache/tomcat8.5/external-conf.
  2. Create the file.
  3. Copy the following content to the file, and adjust the configuration values as required.

    # For the Agent Identifier, representing an application integrated with BMC Remedy Single Sign-On, set application URL as its value.
    # The value should be the same on all nodes in same application cluster, but should be different for different applications.
    # e.g. agent-id = http://midtier-hostname/arsys
    # Application URL to trigger RSSO logout, usually is redirected after application logout is completed
    # Application URL patterns NOT going through RSSO web agent filter
    # If this property is set to true, the application context name will not be excluded for checking excluded url pattern
    # context-included=false
    # RSSO webapp external url for redirection
    # To support multiple RSSO webapps, set the value to a comma separated string: each represents a 'domain to server url' mapping, with the format of <domain>:<url>, 
    # e.g. domain1:https://server1:8443/rsso,domain2:https://server2:8443/rsso
    # RSSO webapp internal url for service call. Use HTTP instead of HTTPS protocol to avoid problems with handshake.
    # To support multiple RSSO webapps, set the value to a comma separated string, each represents a 'domain to server url' mapping, with the format of <domain>:<url>, 
    # e.g. domain1:http://server1:8080/rsso,domain2:http://server2:8080/rsso
    # Time during that cached token status will be used without verified at SSO server side. Default value is 3 min.
    # token-status-cache-timeout=180
    # MSP-related flags
    # Flag to show realm-entry-page for the MSP deployments
    # msp-deployment=true
    # msp-always-show-domain-entry-page=true
    # To disable Remedy SSO agent just set value to true. In this case all requests will not being processed by Remedy SSO.
    # skip-filter=false
    # That property is mandatory for preauthentication. Put one of the following possible values: GET or POST
    # preauth-type=GET
    # Action path mask. If agent detects /_rsso in servlet path. Default value is: /_rsso
    # action-path-mask=/_rsso
  4. Save the changes.

  5. Restart the Tomcat server.

Where to go from here

Configuring BMC Digital Workplace for Remedy Single Sign-On

Was this page helpful? Yes No Submitting... Thank you


  1. Petr Turek

    Hi BMC Docs team,

    this article related to Catalog configuration is under "Configuring after installation of BMC Digital Workplace". Should not it be under the DWP Catalog documentation?

    Since the naming changes and versions are already confusing enough, I think everyone installing these two components, would love to have the documentation better organized.

    Thanks in advance, Petr

    Dec 11, 2018 08:08
  2. Ievgeniia Afinogenova

    Hello Petr,

    We are sorry for the confusion. You are absolutely correct. I have restructured the content according to your feedback. The change will become public later this week. Thank you for your comment.

    Dec 17, 2018 08:51