Idea ID: 2871183

SSO Option for Windows Logon Event based on Group Membership

Status : New Idea
1 month ago

We would like to be able to apply SSO against the Windows NetIQ client for users in a certain group. Similar to the way chains can be filtered out by Groups/Repos/Role we would like the Group assignment to be at the Event level.

For example, if the user belongs to a certain group, which is assigned to the event, they SSO into the system instead of being prompted with their chains. All users attempting to logon via that same event that are not part of a "whitelisted" group are required to satisfy a chain to authenticate.