For the ECGrid Portal we provide Single Sign-On client capabilities per Portal URL using SAML 2.0 (Security Assertion Markup Language).
Messages are validated using a certificate exchange. Users will not be presented with our standard ECGrid Login Screen.
Instead, they with be directed to the configured SSO identity provider to authenticate. This is typically within their own company or a 3rd party SSO provider.
After logging in at the identity provider, the user will be returned to the ECGrid portal with an assertion/message that the user wanting to login has been authenticated. Our portal verifies the message/information and creates a mock user for portal access/authentication with the information provided. We can manually increase the permissions on the mock user as needed.
The users will not have direct login credentials to the ECGrid Portal.
Access control and user system management is completely in your company's control and in a single place.
SSO configuration does require a 1 time set up fee.