Hi all
I do not see SSO purely as authentication. SSO is rather the possibility to "re-use" an existing authentication to access additional resources.
The security of the SSO implementation depends on two things:
1. How secure is the initial authentication?
Password alone…