Rational Directory Server supports SSO with other Rational applications. Rational Directory Server users log on by using a token, which can either be in a cookie or in the URL as a parameter. If Rational Directory Server validates the token, the user is automatically logged on to Rational Focal Point. If no token exists, the user is directed to the Login page. This feature is available when the Rational Directory Server is enabled and cannot be disabled separately.
Each user, including administrators, can have only one authentication method selected, but both Rational Directory Server and Web SSO can be activated for an installation. You might want to activate both methods so that regular users can authenticate by using Web SSO and administrators can authenticate by using Rational Directory Server. In this scenario, administrators can use Rational Directory Server to add and manage users, and regular users can log on to the product automatically.
To add users in Rational Directory Server, administrators must have the Authentication attribute set to Rational Directory Server. Administrators who have the Authentication attribute set to Web Single Sign-On or Standard can add users to Rational Focal Point only.