Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

Same Domain in Crowd SSO

JongBum Lee June 24, 2019

Dear All

 

I know I can apply crowd sso in the same domain.

 

I am wondering if the following is treated as the same domain. (Of course, this is the internal domain.)

 

jira.swportal.domain.com

confluence.swportal.domain.com

crowd.swportal.domain.com

 

best regards. Thanks

1 answer

1 accepted

1 vote
Answer accepted
Bruno Vincent
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
June 30, 2019

Hi @JongBum Lee 

Yes, in that case all your applications belong to the same domain so Crowd SSO will work if you set swportal.domain.com as your SSO domain in Crowd's console.

Please note that foo.bar.swportal.domain.com would not be considered as belonging to the same domain (and thus Crowd SSO would not work). Quoting RFC 6265:

The user agent will reject cookies unless the Domain attribute specifies a scope for the cookie that would include the origin server. For example, the user agent will accept a cookie with a Domain attribute of "example.com" or of "foo.example.com" from foo.example.com, but the user agent will not accept a cookie with a Domain attribute of "bar.example.com" or of "baz.foo.example.com"

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events