Upcoming Migration from LDAP to SSO Authentication for RDKM Managed Applications
Dear RDK Community Members,
We want to inform you about an important upcoming change: we will be migrating from LDAP authentication to Single Sign-On (SSO) for all RDKM Managed applications, including:
By the end of December 2024, all RDKM members will need to use SSO authentication to access these applications. This migration will introduce email-based authentication, meaning custom usernames will no longer be used. Instead, your email address will serve as your login identifier.
We plan to execute astaged rollout, where each application will transition from LDAP to SSO authentication on a biweekly basis. During this period, it is important for all members to start using SSO, as LDAP authentication will be phased out once the migration is complete.
As we approach the migration date, we will provide detailed instructions to ensure a smooth transition. Please stay tuned for further updates and steps to take.
Thank you for your cooperation and support as we make this enhancement to our authentication process
What is SSO ?
It's an authentication process that allows a user to access multiple applications or services with one set of login credentials. Instead of remembering different usernames and passwords for each service, users log in once and gain access to all interconnected systems.
This improves user convenience and enhances security by reducing the number of passwords that need to be managed. SSO is commonly used in enterprise environments for secure application authentication
For more info and queries, please refer the below FAQs.
The current RDK Central user account has been onboarded at okta platform by the RDK Central admin. The user will receive an activation email with a link, which will expire in 7 days.
Click on Activate RDKM SSO Account. It will redirect to page to setup the password.
Click on setup to set your password as per the requirements.
Click on Next. It will redirect to setup security method for MFA.
Click on first option - Bring your own Authenticator App
Click on setup.
Scan the barcode and enter the code from the Authenticator app.
Once setup, click Continue
It will redirect to the login page. Click on Login.
Select Option as RDKM SSO.
Now you will be logged in to the wiki application.
Reset the password as below following the password requirements
Once reset, you will be able to login to wiki.
You will receive a mail also stating that your password was reset.
As we are migrating to Okta, we cannot transfer the encrypted passwords of existing users from LDAP to Okta. Therefore, existing users will need to create a new password in Okta. Please follow the instructions above on "How to reset your password via okta"
Yes, It is mandatory to set new password in Okta as Okta does not recognise existing LDAP password. Please follow the above queries for setting up a new password in Okta.
Yes, It is mandatory to set MFA in Okta as we are migrating from the LDAP based login to Okta. Please follow the above queries on how to setup MFA in Okta.