Configuring Advanced Local Authentication Procedures
149
n
ov
do
cx (e
n)
16
Ap
ril 20
10
Display name:
Specify a name for the class.
Java class:
Select
PasswordFetchClass
.
The Java class path is configured automatically.
3
Click
Next
, then configure the following general properties:
Ignore password retrieval failure:
Select this option if you want users to continue with their
sessions when the Identity Server can’t retrieve their passwords. If this option is not selected,
users are denied access when their passwords can’t be retrieved.
Password to be retrieved:
If your users have been configured to use a universal password,
select
Universal Password
. Otherwise, select
Simple Password
.
4
Click
Finish
.
5
Create a method for this class.
For instructions, see
Section 3.3, “Configuring Authentication Methods,” on page 122
.
6
Assign the password fetch method as the second method for a contract that is using one of the
following for its authentication method:
RADIUS. See
“Configuring for RADIUS Authentication” on page 139
.
X.509. See
“Configuring Mutual SSL (X.509) Authentication” on page 140
.
OpenID. See
“Configuring for OpenID Authentication” on page 147
.
Smart Card. See
“Configuring Access Manager for NESCM” on page 149
.
Kerberos. See
“Configuring for Kerberos Authentication” on page 159
.
7
Update the Identity Server.
4.6 Configuring Access Manager for NESCM
To use a smart card with Access Manager, you need to configure Access Manager to use the
eDirectory server where you have installed the Novell Enhanced Smart Card Login Method for
NMAS (NESCM). You then need to create a contract that knows how to prompt the user for the
smart card credentials. The last task is to assign this contract to the protected resources that you want
protected with a smart card. The following sections describe the prerequisites and the tasks:
Section 4.6.1, “Prerequisites,” on page 150
Section 4.6.2, “Creating a User Store,” on page 150
Section 4.6.3, “Creating a Contract for the Smart Card,” on page 152
Section 4.6.4, “Assigning the NESCM Contract to a Protected Resource,” on page 156
Section 4.6.5, “Verifying the User’s Experience,” on page 156
Section 4.6.6, “Troubleshooting,” on page 157
Summary of Contents for ACCESS MANAGER 3.1 SP2 - README 2010
Page 4: ...4 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 12: ...12 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 158: ...158 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 172: ...172 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 182: ...182 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 290: ...290 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 362: ...362 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 374: ...374 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...