Previous Topic: Kerberos Authentication Configuration at the Policy Server

Next Topic: Kerberos Authentication Configuration at the Windows Workstation

Kerberos Authentication Configuration at the Web Server

Configuring a Windows or UNIX web server to support Kerberos authentication follows these general steps:

  1. Install a SiteMinder Web Agent with SiteMinder Kerberos Authentication Scheme support.
  2. Register a trusted host with the Policy Server and configure the Web Agent.
  3. Configure a Kerberos configuration file (krb5.ini):
  4. Deploy the keytab file (created on the KDC) containing the web server credentials to a secure location on the web server.

Important! If the web server is installed on Windows and the KDC is deployed on UNIX, be sure to perform additional configuration on the web server using the Ksetup utility.