Skip to main content
Applies to BloodHound Enterprise and CE Represents the Single Sign-On (SSO) integration configured in the Jamf Pro tenant. When enabled, the SSO provider can map attributes to authenticate as any Jamf account or group, making it a Tier 0 node with significant security implications.

Created by

process_sso_node in lib/preprocess.py

Edges

The tables below list edges defined by the JamfHound extension only. Additional edges to or from this node may be created by other extensions.

Inbound Edges

Outbound Edges

Edge TypeDestination Node TypesTraversable
jamf_SSO_Loginjamf_Account, jamf_DisabledAccount, jamf_Group

Properties

Property NameData TypeDescription
ssoEnabledbooleanWhether SSO is enabled
idpUrlstringIdentity Provider URL
idpProviderTypestringType of identity provider
entityIdstringSAML entity ID
groupAttributeNamestringAttribute name for group mapping
groupRdnKeystringRDN key for group lookups
siteIDstringSite ID (always “-1” for global)
TierintegerSecurity tier classification (0)
namestringName of the SSO integration
enrollmentSsoConfigstringEnrollment SSO configuration

Relationship Diagram