Glossary A–ZLetter S
Single sign-on
Single sign-on (SSO) means that a person signs in to several applications with their existing company account instead of having a separate password for each.
A central identity service handles the sign-in, and the application trusts its confirmation.
For the management software of a screen network, this means staff sign in with the account they already use for email and office applications. Common standards for this are SAML 2.0 and OpenID Connect. If someone leaves the company and their company account is disabled, their access to the screens is disabled too; rules such as a second factor apply centrally to all applications.
SSO shifts security to the identity service: if it is down, nobody can get in. A well-protected emergency login that does not go through SSO is therefore part of the setup. It also needs to be clarified how permissions are assigned, for example via groups from the company directory, and whether accounts are created automatically at first sign-in. External parties such as agencies usually have no company account and need a different way in.