FAQ KB0392871
Email
How do third-party users access my company’s site once SSO is enabled?
Symptom

My company has Single Sign-On (SSO) enabled, and I need to provide a direct sign-in link for third-party users who are not part of our SSO system. When they use the standard link, they are incorrectly redirected to our SSO login page.


Cause

This is expected behavior. When SSO is enabled, the system routes all authentication through the company’s identity provider. Third-party users require a specific URL that bypasses the SSO redirect and uses the standard SAP Ariba passwordadapter for authentication.


Resolution

To allow third-party users to sign in, you must provide them with a URL constructed for your specific data center, realm, and solution.

  1. Use the following URL structure as a template:

    https://data_center_url/Solution/Main?realm=realm_name&passwordadapter=ThirdPartyUser

  2. Replace the bolded custom elements in the URL using the information below:

    • [data_center_url]: Your site’s specific data center URL. Choose from the following:
      • US: s1.ariba.com
      • EU: s1-eu.ariba.com
      • Prod3: s3.ariba.com
      • UAE: s1.mn1.ariba.com
    • [Solution]: Enter Buyer for SAP Ariba Procurement solutions or Sourcing for SAP Ariba Sourcing solutions.
    • [realm_name]: Enter your company’s realm name.


Applies To

Procurement Application Services > Application Framework > Single Sign-On

Terms of Use  |  Copyright  |  Security Disclosure  |  Privacy