Single sign-on requirements
The following system requirements are required to implement federated single sign-on for your Cisco WebEx organization. These system requirements are the same for Cisco WebEx and the Cisco WebEx meeting applications.
Item
|
Requirement
|
Notes
|
Identity and Access Management (IAM) system
|
Any IAM that conforms to SAML versions (for Cisco WebEx Meeting only) 2.0 or WS-Federation 1.0 standard.
|
Customers can develop their own SAML-compliant IAM system using programming libraries such as OpenSAML or purchase commercial third party IAM systems such as Ping Federate, CA SiteMinder, Microsoft Windows Server ADFS, Oracle Identity Federation/OpenSSO, Novell Identity Manager and IBM Tivoli Federated Identity Manager.
|
X509 Certificate has public key, digitally sign uses private key
|
From trusted organizations like VeriSign and Thawte in the PEM format.
|
Alternatively, customers can serve their own X.509 certificates developed in house using self-signed certificates.
|
The following items are also required:
- Your company must have an SAML 2.0 compliant IAM that meets the WS Federation 1.0 standard.
- You must provide a corporate X.509 public key certificate to be imported into Cisco WebEx Administration Tool. SAML assertions sent to the Cisco WebEx system are signed with the private key.
- You must use a Cisco WebEx supported identity management system (IdP) for tasks such as enabling single sign-on, authentication management, policy-based authorization, identity federation and so on. Supported systems include CA SiteMinder, ADFS, Ping Identity, SAML 2.0 or any WS-Federation 1.0-compliant Identity Management System.
- Your IAM must be configured to provide a SAML assertion with the user account information and SAML system IDs required by the Cisco WebEx system.
- You must provide the URL for the corporate IAM service to be entered in Cisco WebEx Administration tool.
- Users must install the Cisco WebEx application with a command to configure the client for single sign-on and identify the name of your company or organization.
- The single sign-on standard for integration with the Cisco WebEx meeting application uses SAML 2.0 or WS-Federation 1.0.
|