Question regarding SSO (keberos authentication)
Posted in 2013
Topics: Networking & sqlhosts Configuration
Hello All, I am trying to setup an instance for the Single Sign-on authentication using the kerberos 5 protocol. I have a basic question that if in same instance, can we have two services for login to the database: 1- Service one using onsoctcp without csm or kerberos [standard method without SSO] 2- Service two using onsoctcp with cms=(GSSCSM) using kerberos The main purpose of it is to allow/control some database connections using kerbors authenticaion and some without using it. Is it possible? If yes, then please share the details. Thanks. Regards, Omer
Absolutely. Just set up multiple DBSERVERALIASES one for each protocol or authentication method. Art Art S. Kagel Advanced DataTools (www.advancedatatools.com) Blog: http://informix-myview.blogspot.com/ Disclaimer: Please keep in mind that my own opinions are my own opinions and do not reflect on my employer, Advanced DataTools, the IIUG, nor any other organization with which I am associated either explicitly, implicitly, or by inference. Neither do those opinions reflect those of other individuals affiliated with any entity with which I am affiliated nor those of the entities themselves. On Thu, May 30, 2013 at 11:44 AM, O KHAN <theultimateboy@hotmail.com> wrote: > Hello All, > > I am trying to setup an instance for the Single Sign-on authentication > using > the kerberos 5 protocol. > > I have a basic question that if in same instance, can we have two services > for > login to the database: > > 1- Service one using onsoctcp without csm or kerberos [standard method > without > SSO] > 2- Service two using onsoctcp with cms=(GSSCSM) using kerberos > > The main purpose of it is to allow/control some database connections using > kerbors authenticaion and some without using it. > > Is it possible? > > If yes, then please share the details. Thanks. > > Regards, > Omer > > > > ******************************************************************************* > Forum Note: Use "Reply" to post a response in the discussion forum. > > --e89a8f83aa371f01fe04ddf172d6