Managing user-based proxy authentication information

Once an asset is part of the secured enterprise system, the PSO must assign READ access to the asset so users can use proxy authentication. This section describes how to create user-based proxy authentication information using Enterprise Security Manager. To create role- or asset-based proxy authentication information, you must use SMAPI—see Chapter 9, “Proxy Authentication.”

Table 3-6 describes the permissions you must have to manage user-based proxy authentication information.

Table 3-6: Permissions required to manage proxy authentication information

Action

Permissions required

Create user-based proxy authentication information

UPDATE on the subject controlling asset.

View proxy authentication information

READ on the subject controlling asset.

Edit proxy authentication information, including a user’s proxy authentication password

UPDATE on the subject controlling asset.

Delete user-based proxy authentication information

UPDATE on the subject controlling asset.

StepsManaging user-based proxy authentication information

  1. In the Organization Manager tree view, select an organization, and highlight Users.

  2. In the right pane, highlight a user, right-click, and select Proxy Authentication. The Manage User Proxy Authentication Information dialog box displays.

  3. To create proxy authentication information for the user, see “Creating user-based proxy authentication information”.

    To edit an entry, see “Editing user-based proxy authentication information”.

    To delete an entry, highlight the entry, and click Delete.

For complete information about using proxy authentication to implement single sign-on to enterprise resources, see Chapter 9, “Proxy Authentication.”

StepsCreating user-based proxy authentication information

Before you can create proxy authentication information, users and assets must exist in the enterprise environment. To define a user’s proxy authentication information for an asset:

  1. In the Manage User Proxy Authentication Information dialog box, click New. The Create User Proxy Authentication Information dialog box displays.

    Enter:

  2. Click OK to save your changes. The asset now has proxy authentication information associated with it.

Repeat this procedure for each asset for which you want to create proxy authentication information.

StepsEditing user-based proxy authentication information

  1. In the Manage User Proxy Authentication Information dialog box, highlight the entry you want to change, and click Edit. The Edit User Proxy Authentication Information dialog box displays.

  2. Edit any values you want to change. For a description of the fields, see “Creating user-based proxy authentication information”. Click OK to save your changes.

StepsChanging a user’s proxy authentication password

  1. In the Manage User Proxy Authentication Information dialog box, highlight the entry for which you want to change the password, and click Change Password. The Change User Proxy Authentication Password dialog box displays.

  2. Enter the new password twice, and click OK.