Hello,
purely at SSO transition... you could simply backup your current SSO primary node and restore it on different "brand new" server.
For more info see:
Restore a vCenter Single Sign On Single or Primary Node Instance to a New Host Machine
or
there was some KB article about this topuc which is not accessible at this time but it was just about to copy "<SSO directory>\webapps\sso-adminServer\WEB-INF\web.xml"
from the primary to secondary instance and then restart SSO service ... but obviously for some good reason this procedure/KB was withdraw by VMware so do this at your own risk...:)