Authentication and Single Sign
Authentication and Single Sign Authentication and Single Sign
HTTP Header Authentication – SSO Process Authentication Authority (intermediate) Intranet CRM Initial logon Access ERP Internet Groupware Other... Identity information within header variable © SAP AG 2005, Authentication and Single Sign On / Patrick Hildenbrand / 22
Adding the User Name Header • The authentication takes place on the intermediate server • The intermediate adds identity information to the request data • The application servers get the identity information from the request data GET /someresource HTTP/1.1 [ … ] GET /someresource HTTP/1.1 [ … ] HTTP-USER: MyUser © SAP AG 2005, Authentication and Single Sign On / Patrick Hildenbrand / 23
- Page 1 and 2: Authentication and Single Sign-On P
- Page 3 and 4: Authentication Identifies a Subject
- Page 5 and 6: Why Use Single Sign-On? Typical sit
- Page 7 and 8: What the Administrator Wants … Ce
- Page 9 and 10: Web-Based Authentication Methods
- Page 11 and 12: Authentication and SSL with X.509 C
- Page 13 and 14: Obtaining a X.509 Certificate Digit
- Page 15 and 16: SAP Logon Tickets - SSO Process Por
- Page 17 and 18: What is a SAP Logon Ticket • SAP
- Page 19 and 20: SSO to Non-SAP Components Using SAP
- Page 21: Multi Domain SSO Recommendation:
- Page 25 and 26: Header Based Authentication Best Pr
- Page 27 and 28: SAML - SSO Process Authentication A
- Page 29 and 30: Pluggable Authentication Service (P
- Page 31 and 32: Pluggable Authentication Service: A
- Page 33 and 34: JAAS Authentication J2EE Browser Wi
- Page 35 and 36: Single Sign-On for SAP GUI for Wind
- Page 37 and 38: SSO From Web to Traditional - ITS
- Page 39 and 40: Prerequisites 1) Users have the sam
- Page 41 and 42: System Preparation 1. Export Portal
- Page 43 and 44: Agenda Authentication and Identitie
- Page 45 and 46: Single Sign-On Possibilities Authen
- Page 47 and 48: Further Information Public Web: ww
Adding the User Name Header<br />
• The authentication takes place on the intermediate server<br />
• The intermediate adds identity information to the request data<br />
• The application servers get the identity information from the<br />
request data<br />
GET /someresource HTTP/1.1<br />
[ … ]<br />
GET /someresource HTTP/1.1<br />
[ … ]<br />
HTTP-USER: MyUser<br />
© SAP AG 2005, <strong>Authentication</strong> <strong>and</strong> <strong>Single</strong> <strong>Sign</strong> On / Patrick Hildenbr<strong>and</strong> / 23