Administering Cloud EPM: The Platform Beneath the Business Processes · Module 9 · Securing the Perimeter
Sign-on policies
Lesson 102 of 201 · 12 min
What sign-on policies restrict — the conditions under which sign-in is permitted. Create a policy, configure conditions and rules, apply it to a group, test a permitted and a blocked sign-in, and show the interaction with SSO and with network perimeter. SIGN-ON POLICIES, NETWORK PERIMETER AND SSO ARE THREE DIFFERENT CONTROLS THAT CAN EACH BLOCK A USER. When somebody cannot sign in, you now have three places to look. This is why Module 8's diagnostic sequence exists. EXEMPT YOUR ADMINISTRATOR ACCOUNTS DELIBERATELY, or know exactly which policy applies to them. Same discipline as the network perimeter. Policies applied to groups scale; policies applied to individuals do not. Module 6's argument, again.
The full lesson is part of the course
The video, the complete written lesson and the module quiz are included in Administering Cloud EPM: The Platform Beneath the Business Processes, with a certificate on completion and a fourteen-day refund window.
In this module: Module 9 · Securing the Perimeter
- 1Defence in depth for an EPM estate
- 2Network perimeter
- 3Migrating from per-environment IP allowlists
- 4Sign-on policies
- 5Break Glass: managed provider access
- 6Approving access requests
- 7Customer-managed keys: the concepts
- 8Configuring customer-managed keys
- 9Compliance reports and the security capability set
- 10Answering a security questionnaireFree preview
- 11What breaks
- 12Lab: proportionate security, and ten questionnaire answers
