Quantcast
Channel: SCN: Message List - SAP Single Sign-On
Viewing all articles
Browse latest Browse all 2732

Re: Single sign on for ERP and Java stack

$
0
0

Hello Siva,

 

AD or LDAP user is prerequisite for SSO. Wiithout using aa user from and LDAP you cannot configure SSO.

 

Step 1: Prerequisites - User Authentication and Single Sign-On - SAP Library

Prerequisites

●  Create and configure on the Active Directory Servers (ADS), which act as a Kerberos Domain Controllers (KDC),  a service user for the AS Java.

○  The password of the user must never expire.

○  The user must be enabled to use DES encryption.

●  On the ADS for each Kerberos Realm, register with the ADS service user a Service Principal Name (SPN) for every DNS name that can be used to access the AS Java with Kerberos authentication.


●  Prepare the UME configuration file for Kerberos authentication. The UME configuration file must contain attribute mapping for resolving the user id of the authenticated user principal name in the Kerberos Realm. You can add new mappings or use a pre-configured UME configuration file. For more information, see Configuring the UME.


Regards,

Yuksel AKCINAR


Viewing all articles
Browse latest Browse all 2732

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>