
{"id":4434,"date":"2023-02-13T09:37:08","date_gmt":"2023-02-13T09:37:08","guid":{"rendered":"https:\/\/podpora.nuggetsw.cz\/?post_type=lsvr_kba&#038;p=4434"},"modified":"2023-06-30T10:38:52","modified_gmt":"2023-06-30T10:38:52","slug":"zakladni-implementace-sso","status":"publish","type":"lsvr_kba","link":"https:\/\/podpora.nuggetsw.cz\/index.php\/knowledge-base\/zakladni-implementace-sso\/","title":{"rendered":"Z\u00e1kladn\u00ed implementace \u2013 SSO"},"content":{"rendered":"\n<p>Z\u00e1kladn\u00ed implementace u\u017e\u00edv\u00e1 Oauth variantu ov\u011b\u0159en\u00ed v\u016f\u010di AZURE AD, na vy\u017e\u00e1d\u00e1n\u00ed je mo\u017en\u00e9 vyu\u017e\u00edt i variantu u\u017e\u00edvaj\u00edc\u00ed \u201eEnterprise app\u201c v Azure AD p\u0159es SAML ov\u011b\u0159en\u00ed SSO aplikace proti Azure.<\/p>\n\n\n\n<ol class=\"wp-block-list\"><li>P\u0159ihl\u00e1sit se do sv\u00e9ho Azure \u00fa\u010dtu, kde je nastaven Azure Active Directory<\/li><li>Rozkliknout detail Azure Active Directory<\/li><li>Z lev\u00e9ho menu zvolit \u201eApp registrations\u201c<\/li><li>New registration<\/li><\/ol>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"209\" src=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO-1024x209.jpg\" alt=\"\" class=\"wp-image-4435\" srcset=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO-1024x209.jpg 1024w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO-300x61.jpg 300w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO-768x157.jpg 768w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO-1536x314.jpg 1536w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO.jpg 1731w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure><\/div>\n\n\n\n<ol class=\"wp-block-list\" start=\"5\"><li>Nyn\u00ed je t\u0159eba vyplnit n\u00e1zev aplikace, zvolit kdo m\u016f\u017ee u\u017e\u00edt nov\u011b vytvo\u0159enou aplikaci (z\u00e1le\u017e\u00ed na nastaven\u00ed organizace) a nastavit REDIRECT URI, kter\u00e9 bylo p\u0159ed\u00e1no RSM standardn\u011b ve form\u00e1tu: nazevFirmy.portalnugget.cz\/oauth.php<\/li><\/ol>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"826\" height=\"955\" src=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO2.jpg\" alt=\"\" class=\"wp-image-4436\" srcset=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO2.jpg 826w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO2-259x300.jpg 259w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO2-768x888.jpg 768w\" sizes=\"auto, (max-width: 826px) 100vw, 826px\" \/><\/figure><\/div>\n\n\n\n<ol class=\"wp-block-list\" start=\"7\"><li>Po registraci aplikace je pot\u0159eba otev\u0159\u00edt v detailu nov\u011b vytvo\u0159en\u00e9 aplikace sekci &#8222;Certificates &amp; secrets&#8220; a v z\u00e1lo\u017ece Client secres kliknout na &#8222;New client secret&#8220;. N\u00e1sledn\u011b zad\u00e1me popis vytvo\u0159en\u00e9ho kl\u00ed\u010de a nastav\u00edme jeho expiraci &#8211; lze nastavit jednu z p\u0159edvolen\u00fdch hodnot, nebo hodnotu vlastn\u00ed, tj. &#8222;custom&#8220;. Po expiraci kl\u00ed\u010de bude nezbytn\u00e9 generovat nov\u00fd a vym\u011bnit si jej s RSM.<\/li><\/ol>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"597\" src=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO3-1024x597.jpg\" alt=\"\" class=\"wp-image-4437\" srcset=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO3-1024x597.jpg 1024w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO3-300x175.jpg 300w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO3-768x448.jpg 768w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO3-1536x895.jpg 1536w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO3.jpg 1659w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure><\/div>\n\n\n\n<ol class=\"wp-block-list\" start=\"8\"><li>Po vytvo\u0159en\u00ed kl\u00ed\u010de se na stejn\u00e9 obrazovce kl\u00ed\u010d zobraz\u00ed. Hodnotu &#8222;Secret ID&#8220; je pot\u0159eba p\u0159edat RSM. (Na uk\u00e1zkov\u00e9m screenshotu jsou hodnoty vymaz\u00e1ny)<\/li><\/ol>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"605\" height=\"253\" src=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO4.jpg\" alt=\"\" class=\"wp-image-4438\" srcset=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO4.jpg 605w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO4-300x125.jpg 300w\" sizes=\"auto, (max-width: 605px) 100vw, 605px\" \/><\/figure><\/div>\n\n\n\n<ol class=\"wp-block-list\" start=\"9\"><li>Posledn\u00edm krokem je v detailu vytvo\u0159en\u00e9 aplikace na str\u00e1nce &#8222;Overview&#8220; p\u0159edat hodnoty &#8222;Objet ID&#8220; a &#8222;Directory (tenant) ID&#8220; RSM. (Na uk\u00e1zkov\u00e9m screenshotu jsou hodnoty vymaz\u00e1ny)<\/li><\/ol>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"754\" height=\"203\" src=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO5.jpg\" alt=\"\" class=\"wp-image-4439\" srcset=\"https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO5.jpg 754w, https:\/\/podpora.nuggetsw.cz\/wp-content\/uploads\/2023\/02\/SSO5-300x81.jpg 300w\" sizes=\"auto, (max-width: 754px) 100vw, 754px\" \/><\/figure><\/div>\n","protected":false},"excerpt":{"rendered":"<p>Z\u00e1kladn\u00ed implementace u\u017e\u00edv\u00e1 Oauth variantu ov\u011b\u0159en\u00ed v\u016f\u010di AZURE AD, na vy\u017e\u00e1d\u00e1n\u00ed je mo\u017en\u00e9 vyu\u017e\u00edt i variantu u\u017e\u00edvaj\u00edc\u00ed \u201eEnterprise app\u201c v Azure AD p\u0159es SAML ov\u011b\u0159en\u00ed SSO aplikace proti Azure. P\u0159ihl\u00e1sit se do sv\u00e9ho Azure \u00fa\u010dtu, kde je nastaven Azure Active Directory Rozkliknout detail Azure Active Directory Z lev\u00e9ho menu zvolit \u201eApp registrations\u201c New registration Nyn\u00ed [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":0,"template":"","format":"standard","meta":{"footnotes":""},"lsvr_kba_cat":[143,209],"lsvr_kba_tag":[],"class_list":["post-4434","lsvr_kba","type-lsvr_kba","status-publish","format-standard","hentry","lsvr_kba_cat-instalace-verzi-modulu","lsvr_kba_cat-systemove-naroky"],"_links":{"self":[{"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/lsvr_kba\/4434","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/lsvr_kba"}],"about":[{"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/types\/lsvr_kba"}],"author":[{"embeddable":true,"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/users\/3"}],"version-history":[{"count":1,"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/lsvr_kba\/4434\/revisions"}],"predecessor-version":[{"id":4440,"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/lsvr_kba\/4434\/revisions\/4440"}],"wp:attachment":[{"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/media?parent=4434"}],"wp:term":[{"taxonomy":"lsvr_kba_cat","embeddable":true,"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/lsvr_kba_cat?post=4434"},{"taxonomy":"lsvr_kba_tag","embeddable":true,"href":"https:\/\/podpora.nuggetsw.cz\/index.php\/wp-json\/wp\/v2\/lsvr_kba_tag?post=4434"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}