Expand my Community achievements bar.

Don’t miss the AEM Skill Exchange in SF on Nov 14—hear from industry leaders, learn best practices, and enhance your AEM strategy with practical tips.
SOLVED

Exploring options to disable & Enable users on SSO login (Both Author & Publish)

Avatar

Level 1
  • Hi Team,

    We have bussiness requirment that we need to disable user for a period of time and enable them back if needed.

    We have tried AEM disable user option which will flag the user and restrict user login. But this is functional only with AEM login flow and not working with SSO

    Also when we have SSO enabled the user activation is restricted as replication agent will not allow user activation due to difference in session tokens.

    So requesting your help to restrict user login in both Author and Publish when user belong to some group.

Note: We are using AEM 6.5.6 and have custom authentication handler to create and add users to specific group during login.

1 Accepted Solution

Avatar

Correct answer by
Employee Advisor

hi @lmohanrk ,
User management depends on the vendor giving SSO service.

For instance if you are using Azure AD for SSO, the following steps can be followed :
https://help.skytap.com/sso-with-azure-active-directory.html

To summarise your ask : The enabling/disabling should be done on the user management of the platform providing SSO and nothing can be controlled in AEM w.r.t  SSO user management.

Thanks.

View solution in original post

1 Reply

Avatar

Correct answer by
Employee Advisor

hi @lmohanrk ,
User management depends on the vendor giving SSO service.

For instance if you are using Azure AD for SSO, the following steps can be followed :
https://help.skytap.com/sso-with-azure-active-directory.html

To summarise your ask : The enabling/disabling should be done on the user management of the platform providing SSO and nothing can be controlled in AEM w.r.t  SSO user management.

Thanks.