IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  Windows Desktop Single Sign On

    Posted 12/30/19 03:52 PM
    Hi,

    I have ISAM its authentication is delegated to External application (EAI) running on Apache (httpd webserver). Users gets authenticated by EAI and Sessions are created in ISAM and users are able to access all entitled apps seamlessly (without reauthentication).

    I would like to implement the Windows Single Sign On to EAI application itself.

    Expectation to achieve is:
    User will log into Windows machine in Domain and when access the EAI application , it should not challenge for Authentication.

    Studied on IBM Sites and have few doubts to be clarified below

    Q1) Is it mandatory to have the EAI deployed or running on IIS? I had been through the IBM sites and see most of they saying Application (in my case EAI) running on IIS.
    Q2) Will it work if users use Internet Explorer only?

    Please share link to follow to achieve this


    Thanks,
    Rahil

    ------------------------------
    Rahil Anwar
    ------------------------------


  • 2.  RE: Windows Desktop Single Sign On

    Posted 12/31/19 12:58 AM
    Hi Rahil,

    1) WebSEAL itself supports kerberos authentication. I think here it is not important that to use, the main thing that there was support for kerberos authentication. IIS is the simplest solution, because it is easy to configure. 

    2) FireFox and Chrome also support Kerberos authentication




    ------------------------------
    Igor Vinogradov
    ------------------------------