If the SSO operation is successful for an ABL session, it:
1. Makes a deep copy of the user credentials from the security token into the ABL session context.
2. Records the session's user ID and login session ID for internal use by auditing (and other internal functions), effectively setting the identity for the session.