Authentication and Single Sign

Authentication and Single Sign Authentication and Single Sign

msit2005.mut.ac.th
from msit2005.mut.ac.th More from this publisher
03.11.2014 Views

Communication in Integration Scenarios User Id / Password Kerberos NTLM Web access management products SAP Enterprise Portal Applications SAP Logon Ticket X.509 Certificate SAML Artifact WAM Token - Plug-In / Agent © SAP AG 2005, Authentication and Single Sign On / Patrick Hildenbrand / 44

Single Sign-On Possibilities Authentication Type SSO to non-SAP Applications SSO to SAP Applications User ID / Password •EP User Mapping •EP User Mapping X.509 Digital Certificates SAP Logon Tickets Integrated Windows Authentication EAM-Authentication SAML •Direct client connection •SAP Web Server Filter •SAP Ticket Verification Library •NTLM/Kerberos via direct client connection to IIS applications •Using EAM SSO Agent Software •Application specific •Direct Client Connection •Certificate sent by EP Server •SAP Application configuration •NTLM/Kerberos via IIS (plus IISProxy) to WebAS Java 6.40 or SAP EP 6.0 •Using WAM SSO Agent plus HTTP Header Authentication to WebAS Java 6.40 or SAP EP 6.0 •WebAS Java 6.40 Other •Application specific •JAAS (Custom Authentication Modules) © SAP AG 2005, Authentication and Single Sign On / Patrick Hildenbrand / 45

<strong>Single</strong> <strong>Sign</strong>-On Possibilities<br />

<strong>Authentication</strong> Type SSO to non-SAP Applications SSO to SAP Applications<br />

User ID / Password<br />

•EP User Mapping<br />

•EP User Mapping<br />

X.509 Digital<br />

Certificates<br />

SAP Logon Tickets<br />

Integrated Windows<br />

<strong>Authentication</strong><br />

EAM-<strong>Authentication</strong><br />

SAML<br />

•Direct client connection<br />

•SAP Web Server Filter<br />

•SAP Ticket Verification Library<br />

•NTLM/Kerberos via direct client<br />

connection to IIS applications<br />

•Using EAM SSO Agent<br />

Software<br />

•Application specific<br />

•Direct Client Connection<br />

•Certificate sent by EP Server<br />

•SAP Application configuration<br />

•NTLM/Kerberos via IIS (plus<br />

IISProxy) to WebAS Java 6.40 or<br />

SAP EP 6.0<br />

•Using WAM SSO Agent plus<br />

HTTP Header <strong>Authentication</strong> to<br />

WebAS Java 6.40 or SAP EP 6.0<br />

•WebAS Java 6.40<br />

Other<br />

•Application specific<br />

•JAAS (Custom <strong>Authentication</strong><br />

Modules)<br />

© SAP AG 2005, <strong>Authentication</strong> <strong>and</strong> <strong>Single</strong> <strong>Sign</strong> On / Patrick Hildenbr<strong>and</strong> / 45

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!