This documentation supports the 24.3 and consecutive patch versions of BMC Helix Single Sign-On.To view an earlier version, select the version from the Product version menu.

Connecting the same BMC Helix SSO agent to different BMC Helix SSO servers


The BMC Helix Single Sign-On agent is usually configured to communicate with only one BMC Helix SSO server.  In such configuration, the BMC Helix SSO agent performs tasks, such as checking configuration, checking the single sign-on token, and redirecting logons and logoffs.

You can configure the BMC Helix SSO agent to support communication with multiple BMC Helix SSO servers on different domains.

Multiple servers on different domains.png

The mapping between a domain and a BMC Helix SSO server (<domain>:<url>) is defined through the sso-external-url and sso-service-url properties in the rsso-agent.properties file.

To support multiple BMC Helix SSO servers on a single BMC Helix SSO agent, set different values of the domain-to-server mapping as comma-separated strings.

In the following configuration example,  firstcompany and secondcompany are the BMC Helix SSO servers' domains, and firstcompany-hsso.bmc.com and secondcompany-hsso.bmc.com are the BMC Helix SSO servers URLs:

sso-external-url=firstcompany:https://firstcompany-hsso.bmc.com:8443/hsso,secondcompany:https://secondcompany-hsso.bmc.com:8443/rsso
sso-service-url=firstcompany:http://firstcompany-hsso.bmc.com:8080/hsso,secondcompany:http://secondcompany-hsso.bmc.com:8080/rsso


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*