UCCE SSO
older links
High Level Steps
Confirm Cisco IDS and ADFS are using the same NTP Server (or are both synced to an accurate NTP Server)
Cisco IDS
*Regenerate the Encryption/Signature key by clicking Regenerate *Regenerate the SAML Certificate by clicking Regenerat *Install AFDS on W2016 *Download the ADFS federation meta XML file -
https://<ADFS Server FQDN>/federationmetadata/2007-06/federationmetadata.xml
*Download the Ids Meta Data XML file from Ids
*create the Replaying Party Trust - with two Claims Name (as per Cisco docs) … *Upload the above ADFS XML file into IDS *Test
- Register the UCCE Servers with Ids
- Pass the SSO test
- Set to Hybrid (from non SSO)
- Now CCE agents users have the SSO checkbox which is now enabled and can be checked.