160
Novell Access Manager 3.1 SP2 Identity Server Guide
n
ov
do
cx (e
n)
16
Ap
ril 20
10
Figure 5-1
Example Kerberos Configuration
Kerberos requires the following configuration tasks:
Section 5.1, “Prerequisites,” on page 160
Section 5.2, “Configuring Active Directory,” on page 161
Section 5.3, “Configuring the Identity Server,” on page 164
Section 5.4, “Configuring the Clients,” on page 169
Section 5.5, “Configuring the Access Gateway for Kerberos Authentication,” on page 171
5.1 Prerequisites
Kerberos authentication is supported for the following configuration:
Clients must be running one of the following operating systems:
Windows XP with Internet Explorer 7 or 8. Some minimal testing has been done with Internet
Explorer 6. To make Kerberos work with Internet Explorer 6, you need to enable integrated
Windows authentication. For information on how to enable this feature, see
“Authentication
Uses NTLM instead of Kerberos” (http://technet.microsoft.com/en-us/library/cc779070.aspx)
.
Windows Vista with the latest version of Internet Explorer.
Access Gateway
Protected Resource for Web Server
Contract: Kerberos contract
Active Directory Domain: ad.novell.com
Vista/XP Clients
Active Directory
Web Server
Identity Server
Files: nidpkey.keytab,bcsLogin.conf
Kerberos: class, method, contract
User store: Active Directory
Identity Server User
First Name: amser
User Logon Name: amser.provo.novell.com
SPN: HTTP/[email protected]
Summary of Contents for ACCESS MANAGER 3.1 SP2 - README 2010
Page 4: ...4 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 12: ...12 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 158: ...158 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 172: ...172 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 182: ...182 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 290: ...290 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 362: ...362 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 374: ...374 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...