We have built a "SSO ready" solution for a customer (custom arsusec exit). I write "SSO ready", since the customer has STILL not implemented a SSO solution (I think they are considering Kerberos).
If and when they do, our solution will accept a ticket as an input parameter, and this ticket will be verified vs the whatsitcalledthingamy-"ticket dispensing server" or whatnot. Today, we have a simpler algorithm in place for handling this (as they don't have any "real" tickets), and our solution works with the same number of parameters. ITs just the content today that is not real SSO.
So yes, it should be quite doable.