Bad Passwords Part 4 - SSO: One and Done

Erin Patten • Jun 23, 2022

SSO: One and Done 

SSO, short for Single Sign On.  You've probably used it and not even realized it. 

So what is it?  Is it a good idea?

 

Welcome to the fourth and final episode in our Bad Passwords series. (See Part 1 , Part 2, and Part 3) There's only one more major player in the authentication game to talk about, and that is Single Sign On (SSO).


Basically, SSO allows you to sign in once, and use several different software tools.  For example, logging into your Microsoft account, and being able to open Outlook and Word and Excel without having to log in again?  That is SSO in action.


How does it work?


Well...  there are a few different frameworks, and they use agents and tokens and policy servers... you know, for most people's purposes, it's neither interesting nor important.  The better question is:


Is it a good idea?


In some cases, like with Microsoft 365, or Google apps, or Adobe Creative Suite, it is a moot point; if you want to use the software, you do things their way.  That said, just like most things there are pros and cons, but in a nutshell:  SSO is a powerful tool that can increase online security and make using apps a lot more user friendly.   


The Pros:

  • SSO works really well in organizational situations where an IT team is managing a suite of approved applications.  Fewer passwords means fewer lost passwords for IT to fix, and if an employee leaves, changing one login will completely lock them out of the system.
  • SSO makes things easier for end users, both in not having to constantly keep logging in, and in having fewer passwords to remember.
  • It lessens the chances of phishing, and fewer passwords mean fewer hackable access points.


The Cons:

  • SSO really needs to be paired with MFA (Multi-Factor Authorization) to make sure the login is legitimate, because:
  • If the login does get cracked or hacked, the intruder has the proverbial "keys to the castle."
  • Be especially careful using SSO provided by social networks, such as Facebook, for third-party applications, they can be less secure.



So where does that leave us?  Mostly, just being aware that SSO exists, and when you are using it, being thoughtful about when and how you log in and log out.  SSO or not, use good password practices and make good decisions :) 


Any questions about good password practices?  Revisit Part 1 , Part 2, and Part 3 in our Bad Passwords series.


Thanks for reading! 



As always, if you have any questions or concerns about cybersecurity

and/or password management, give us a ring!


Contact Us

Share this Post

By Erin Patten 07 May, 2024
Scam of the Month A favorite feature of our Monthly Newsletter, now on the Blog!
A screenshot of a news broadcast
07 May, 2024
The City of Wichita was hit by a Ransomware attack. KSN reached out to Bill for his take on the situation.
CMMC Midwest poster
25 Apr, 2024
Soteria is proud to co-host the CMMC Midwest Conference
10 Apr, 2024
Save the Date! Soteria is having an Open House, and everyone is invited! Stay tuned for more details.
A black and white photo of the inside of a hard drive.
29 Mar, 2024
March 29th is World Backup Day, and we have some tips for bulletproof backups for your business.
Kansas lawmakers working to protect against breaches after major cyberattack
21 Mar, 2024
Kansas lawmakers are working to protect the state against breaches after a major cyberattack - KWCH looked to Bill for insight on the situation.
the CRN MSP500 2024 logo, in front of a blue and purple techy background
13 Feb, 2024
Soteria is honored to be included.
A large pile of gold bars
By Erin Patten 31 Jan, 2024
This month's scam has the Midas touch.
Two arms hold golden trophies in front of a yellow background.
26 Dec, 2023
The list of 2023's most common passwords is out! Did your favorite make the list?
More Posts
Share by: