MSAMM
Back to course

Administering Cloud EPM: The Platform Beneath the Business Processes · Module 9 · Securing the Perimeter

Sign-on policies

Lesson 102 of 201 · 12 min

What sign-on policies restrict — the conditions under which sign-in is permitted. Create a policy, configure conditions and rules, apply it to a group, test a permitted and a blocked sign-in, and show the interaction with SSO and with network perimeter. SIGN-ON POLICIES, NETWORK PERIMETER AND SSO ARE THREE DIFFERENT CONTROLS THAT CAN EACH BLOCK A USER. When somebody cannot sign in, you now have three places to look. This is why Module 8's diagnostic sequence exists. EXEMPT YOUR ADMINISTRATOR ACCOUNTS DELIBERATELY, or know exactly which policy applies to them. Same discipline as the network perimeter. Policies applied to groups scale; policies applied to individuals do not. Module 6's argument, again.

The full lesson is part of the course

The video, the complete written lesson and the module quiz are included in Administering Cloud EPM: The Platform Beneath the Business Processes, with a certificate on completion and a fourteen-day refund window.

Get the free lessons by email

We will email you a link to every free lesson in this course. No account needed, and one message only.

In this module: Module 9 · Securing the Perimeter

  1. 1Defence in depth for an EPM estate
  2. 2Network perimeter
  3. 3Migrating from per-environment IP allowlists
  4. 4Sign-on policies
  5. 5Break Glass: managed provider access
  6. 6Approving access requests
  7. 7Customer-managed keys: the concepts
  8. 8Configuring customer-managed keys
  9. 9Compliance reports and the security capability set
  10. 10Answering a security questionnaireFree preview
  11. 11What breaks
  12. 12Lab: proportionate security, and ten questionnaire answers