7. vCloud Security Examples : 7.1 Single Sign-On (SSO) – Provider : 7.1.2 Use Case
   
7.1.2 Use Case
In this Service Provider SSO use case, a vCloud administrator provides credentials to the UI client only once, which validates them against the SSO server. If the validation is successful, the SSO server issues a SAML token, which then can be used by the UI client to access both vCenter and vCloud Director without having to enter credentials multiple times. The logical architecture for this is shown in the following figure.
Figure 30. Cloud Provider SSO Logical Architecture