Previous Topic: Authentication Scheme Dialog—Windows Template

Next Topic: User DN Lookup Formats for Windows Authentication Schemes

Authentication Scheme—Windows Template—Scheme Setup Tab

The Scheme Setup tab for a Windows authentication scheme is where you specify a server and target for the scheme.

This scheme supports:

Select either Active Directory/LDAP or WinNT.

Your selection depends on where user data is stored and the namespace you selected when configuring the user directory connection in the Policy Server User Interface. If you select Active Directory/LDAP, user data must be stored in a directory configured using an AD or LDAP namespace. If you select AD, the Active Directory must be running in native mode. If you select WinNT, user data must be stored in a directory configured using the WinNT namespace.

Use Relative Target

Select this checkbox when you want to specify a relative path name for the Target or resource that this Windows authentication scheme protects. When this checkbox is selected, the Web Server Name field is dimmed.

Web Server Name

Enter the fully qualified domain name of the IIS web server that contains the virtual directory to which you want to redirect for Windows authentication.

Note: IP addresses are not supported.

The server specified in this field is where SiteMinder redirects in order to resolve authentication based on the user’s current Windows login username and password.

Target

Enter the name of virtual directory and .ntc file used by SiteMinder to invoke the authentication scheme.

The Target field should point to a .ntc file which SiteMinder Agents interpret in order to authenticate users based on their current login user names and passwords. The Policy Server uses the following value by default:

/siteminderagent/ntlm/creds.ntc

User DN Lookup

If you selected the Active Directory/LDAP radio button, you must specify a lookup string for the user DN in this field. The formats for the User DN Lookup are described in the next section.