Steps: Configure Single Sign-On (SSO) for Workday Strategic Sourcing
You can configure Single Sign-On (SSO) in Workday for Workday Strategic Sourcing. SSO enables users to sign in at either Workday or Workday Strategic Sourcing using a single set of credentials and access both applications.
To achieve SSO capability, users must exist with the same account information on both Workday and Workday Strategic Sourcing. By provisioning user accounts from Workday to Workday Strategic Sourcing, Workday creates user accounts in Workday Strategic Sourcing at first sign-in.
You need to engage Workday Professional Services during deployment to set up SSO for Workday Strategic Sourcing completely. Workday Professional Services must set up tenant mapping for your Workday tenant in Workday Strategic Sourcing before you can proceed with this procedure.
- To complete setting up tenant mapping for your tenant in Workday Strategic Sourcing, engage:
- Your implementation partner if you're in implementation.
- The Workday Support Team if you are actively deployed.
- Access theManage Workday SSO Configurationtask.Security:Security Administrationdomain in the System functional area.
- As you complete the task, consider:
Optie Omschrijving SSO Timeout (in minutes)The time after which users need to reauthenticate. Workday recommends you set this field to60.SSO ServiceStrategic Sourcing.EnvironmentWorkday populates the Workday environment for the SSO service.DisabledClear this check box if it's selected. - (Optional) Create a security group that contains the users for which you want to provide SSO access.Examples: Create a:
- User-based security group to enable access for specific users. See Create User-Based Security Groups.
- Rule-based security group to enable access to all employees and contingent workers. SeeContingent workers don't have SSO accessin Troubleshooting: Single Sign-On (SSO) for Workday Strategic Sourcing.
- Access theActivate Account Provisioningtask.Security:Set Up: Account Provisioning Applicationsdomain in the System functional area.
- As you complete the task, consider:
Optie Omschrijving ApplicationSelectStrategic Sourcing.EnvironmentWorkday populates the Workday environment when you select the application.SchemaThe schema Workday uses to provision accounts with Workday Strategic Sourcing. TheStrategic Sourcing Usersschema includes these attributes:- Employee ID.
- First name.
- Last name.
- Primary work email.
- Username.
- Workday ID.
Users to ProvisionSelect the security group that includes the users you want to provision. Workday provisions additional accounts as you add users to the security group.Run theActivate Account Provisioningtask if you subsequently select another security group in this field. If you select another security group and reactivate account provisioning, your existing users should wait up to 5 minutes before they sign in. - When you complete this procedure, notify:
- Your implementation partner if you're in implementation.
- The Workday Support Team if you are actively deployed.
When a user signs into Workday Strategic Sourcing:
- If they have an active SSO session, they access the home page of Workday Strategic Sourcing.
- If they don't have an active SSO session, they need to sign in first using the authentication scheme specified for them on the active Workday authentication policy.
SSO sign-ins for Workday Strategic Sourcing display in the
Signons and Attempted Signons
report as SSO.