Known issues and limitations

  • Logout does not integrate with the JAAS module to perform Single Log-Out (SLO) because of the sequence SLO must take. Applications wishing to use SLO functionality must be modified to include a reference to PingFederate’s SLO service within the application itself.
  • Account linking is not supported.
  • In cases where the SP-initiated SSO property (enableSPSSO) is set to true, and the ssoURL property is set incorrectly, authentication through PingFederate and access to the administrative console is not possible. IdP-initiated SSO requests can be made along with the NetWeaver administrative console URL as a Target Resource. This temporarily allows access to the NetWeaver administrative console to set the correct SSO URL.

    For example: https://<hostname>:<port>/idp/startSSO.ping?PartnerSpId=<hostname>:default:entityId&TargetResource=http://<hostname>:<port>/nwa