ALERT: Some images may not load properly within the Knowledge Base Article. If you see a broken image, please right-click and select 'Open image in a new tab'. We apologize for this inconvenience.

What are the pre-requisite to have SSO with a separate key store?


Article ID: 19815


Updated On:


CA Single Sign On Secure Proxy Server (SiteMinder) CA Single Sign On SOA Security Manager (SiteMinder) CA Single Sign-On



In an architecture where you have multiple policy server connected to individual policy store and individual key store, if you want to do Single Sign On between the different policy server / environments. You need to make sure that all Policy Server will share have the same keys.


In order to have SSO between your 2 environment (multiple Policy Store with separate key store) you should set the same static key and session ticket key for each policy server.

You can check the following documentation:

Policy Server Guides : Policy Server Administration Guide:
Configuring and Managing Encryption Keys : Key Management Scenarios: Multiple Policy Stores with Separate Key Stores


Component: SMPLC