Previous Topic: Impersonation Template

Next Topic: RADIUS CHAP/PAP Template

MS Passport Template

Use this table when configuring an authentication scheme based on scheme type MS Passport. The Java methods referenced in the table are in the class SmScheme.

Information Type

Value Assignment and Meaning

Scheme type

setType(TypeMSPassport)

The scheme type MS Passport.

Description

setDescription(description)

The description of the authentication scheme.

Protection level

setLevel(value)

A value of 1 through 1000. The higher the number, the greater degree of protection provided by the scheme. Default is 1.

Library

setLibrary("smauthmspp")

The default library for this scheme type.

Parameter

setParameter(param)

The following information, separated by semicolons:

  • A DN for an anonymous user. Format:

anonuser=anonUserDN

If you specify an anonymous user DN, the protection level is 0.

  • The search string for looking up a user in a user directory of the specified type. Format:

attribute=nameSpace:attrib=searchSpec

Valid namespaces are LDAP, AD, ODBC, WinNT, and Custom.

  • The registration URL. The URL can be a custom URL or a SiteMinder form. Formats:

registrationurl=URL (custom URL)
registrationurl=FORM=URL (SiteMinder form)

Example using an LDAP attribute and a custom URL:

attribute=LDAP:altSecurityIdentities=
Kerberos:%s@company.local;registrationurl
=http://passport.xanadu.local/registration/passportreg.asp

Shared secret

setSecret("")

Set to an empty string. Not applicable to this scheme.

Is template?

setIsTemplate(templateFlag)

Set to false (0) to indicate that the scheme is not a template.

Is used by administrator?

setIsUsedByAdmin(0)

Set to false (0)—scheme is not used to authenticate administrators.

Save credentials?

setAllowSaveCreds(0)

Set to false (0) to indicate that user credentials won’t be saved.

Is RADIUS?

setIsRadius(0)

Set to false (0)—scheme is not used with RADIUS agents.

Ignore password check?

setIgnorePwCheck(1)

Set to true (1)—ignore password checking.