Single Sign-On Configuration | Teradata Vantage - 17.10 - Configuring Single Sign-On - Advanced SQL Engine - Teradata Database

Teradata Vantage™ - Advanced SQL Engine Security Administration

Product
Advanced SQL Engine
Teradata Database
Release Number
17.10
Release Date
July 2021
Content Type
Administration
Security
Publication ID
B035-1100-171K
Language
English (United States)

Teradata supports Single Sign-On (SSO) so users do not have to enter credentials multiple times to access different applications such as the database.

In a non-browser Vantage environment, you can exchange the username and password with a token using an OAuth flow API. Vantage is based on the OpenID Connect (OIDC) protocol which uses JSON Web Tokens (JWT) delivered via OAuth 2.0. OAuth 2.0 provides resource access and sharing and OIDC provides user authentication. For on-premises Vantage systems, this functionality is provided by a central broker identity provider.

SSO authentication with the IdP can only be done in a browser from which an OpenID Connect is initiated and an authentication token (JWT) is made available to the applications and database.