SSO - allow remote access to single ESS Portal, backend access to company devices only
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-09-2024 08:46 AM - edited 08-09-2024 08:48 AM
Hi All,
Hoping someone has accomplishing something similar. We have a single SSO provider to allow users to login to the SN platform. We want to :
- Enable remote access (personal devices) to only a single ESS Portal using SSO Provider
- Restrict backend access to ServiceNow using company devices only using same SSO provider as #1
I'm struggling to find where we would configure this setup. Would this be restrictions setup on the SSO provider side or would this be restrictions setup on the SN side, maybe based on IP ranges. If on the SN side, what features would we use for this?
Thanks in advance if anyone has seen this use case before and has a recommendation!

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-18-2024 07:55 PM
Hi @Tyson3 ,
Please follow this MS article to understand how these claims can be added to the response.
You may want to explore these claims.
http://schemas.microsoft.com/2012/01/devicecontext/claims/ismanaged
http://schemas.microsoft.com/2014/02/devicecontext/claims/isknown
Thanks,
Randheer