
Server Administration
ETV Portal Server Admin Guide
81
† ETV Portal Server required field. All others are optional.
Using Single Sign-On
To use single sign-on, go to
Access Control
and then check
Enable Authentication and
Authorization
and
Use LDAP Database
. If the LDAP server is Microsoft Active Directory, you
can select
Use Integrated Windows Authentication
to enable "MCS Single Sign-on." This
means that once you login to your local network with your assigned credentials, you can open
ETV Portal Server without re-entering your login credentials. ETV Portal Server uses your
assigned credentials to authenticate and authorize your defined permissions within the
application. (If using an LDAP directory other than Microsoft's Active Directory, VBrick
strongly recommends using SSL to encrypt the communication between the Portal Server
server and the LDAP directory. Please consult your LDAP vendor documentation for
instructions on how to configure SSL.) When configuring for Integrated Windows
Authentication, keep the following points in mind:
Attribute for Usernames†
Required by ETV Portal Server.
Attribute to identify a user. The
following sample username attributes are widely used but refer
to a specific LDAP schema:
• Microsoft Active Directory:
sAMAccountName
• Novell eDirectory:
uid
Attribute for Groups†
Required by ETV Portal Server.
Attribute to identify the group
to which a user belongs. The following sample group
attributes are widely used but refer to a particular LDAP
schema:
• Microsoft Active Directory:
memberOf
• Novell eDirectory:
groupMembership
User Base DN
Base distinguishing name (DN) of user nod and/or the Base
DN for the Master Username.
Username Prefix
Used in non-Active Directory environments where the user
name is prefixed with a specific string such as
uid=
or
cn=
. The
following sample prefixes are widely used but refer to a
specific LDAP schema:
•
uid=
•
cn=
Master Username
Required for single-sign-on. User name that has admin
permission to browse the LDAP tree. Used to browse the
LDAP tree to get user groups.
Master Password
Required for single-sign-on. Password for Master Username.
Ind. Group ObjectClass
A group attribute in the LDAP database. Identifies which
entries will be searched for user memberships.
Ind. Group Identifier
The group attribute that uniquely identifies a group. MCS will
match the values returned for this attribute with group names
entered on the
User Groups
page.
Note
The Softerra LDAP Browser 2.6 provides an Explorer-like LDAP client you can use to
browse the LDAP tree. It is available for Windows only and can be downloaded free of
charge from Softerra at
http://www.ldapbrowser.com
Summary of Contents for EtherneTV v4.2.1 Portal Server
Page 12: ...xii Preface ...
Page 100: ...88 2008 VBrick Systems Inc ...
Page 116: ...104 2008 VBrick Systems Inc ...
Page 132: ...120 2008 VBrick Systems Inc ...
Page 152: ...140 2008 VBrick Systems Inc ...
Page 168: ...156 2008 VBrick Systems Inc ...
Page 179: ......
Page 180: ...VBrick Systems Inc 12 Beaumont Road Wallingford Connecticut 06492 USA ...