Pluggable Authentication Services for External Authentication
Authentication Mechanisms Supported by the PAS
Authentication Using Windows NTLM
Verifying User ID/Password on the Windows NT Domain Controller
Authentication Using X.509 Client Certificates
Authentication Using an LDAP Bind to a Directory Server
Authentication Using an Arbitrary Mechanism on the Web Server
Authentication Using a Mechanism Provided by a Partner
Prerequisites for Using PAS
Logon Tickets
Prerequisites for Using Windows NTLM Authentication
Prerequisites for Verifying Users on the Domain Controller
Prerequisites for Using X.509 Client Certificates
Prerequisites for Using an LDAP Bind to a Directory Server
Prerequisites for Using an Arbitrary Mechanism on the Web Server
Prerequisites for Using a Partner Mechanism
Secure Network Communications
Configuring the PAS
Configuring the Use of Logon Tickets
Configuring Windows NTLM Authentication on the Web Server
Configuring SNC
Configuring SNC on the Application Server
Configuring SNC on the AGate
Configuring SNC on the WGate
Installing the PAS
Configuring the PAS Service File
Examples
Specifying the HTTP Header Variable to Use
Maintaining the User Mapping in the SAP System
Configuring the PAS for Providing the SAP User ID Directly
Troubleshooting
Testing the Configuration Using the ITS Administration Tool
Testing the Use of SNC
Testing Logon Tickets and PAS
Checking the HTTP Header Variable
Sample Trace File: SNC Initialization
Sample Trace File (AGate): Successful PAS Using NTLM
Sample Trace File (AGate): SAP User ID not Found