User guide

Authentication
1-25
Item Description
Role name/role set name Name of the role or role set assigned to the user.
Multiple roles or role sets can be set.
The role and role set names set in user information must be those
defined by role configuration.
Re-authentication interval Interval of the time from authentication to subsequent re-
authentication required.
Validity period start time Date and time when the user starts using Single Sign-on.
Validity period end time Date and time when the user ends the use of Single Sign-on.
For details of roles and role sets, refer to "Relationships between Roles, Users, and Resources".
Authentication Information
After a user is authenticated, the user's mail address, employee number, and other information that is
registered in the SSO repository are transferred as authentication information in a cookie format to the
business, authentication and repository servers.
Authentication in a Multi-domain Environment
Authentication and authorization Interstage Single Sign-on are also available for an environment where
the business system and authentication infrastructure belong to different domains.
Figure 1-19 Authentication in a Multi-domain Environment