Overview

Authentication and Authorization

In HACloud, authentication and authorization are provided by the Host Access Management and Security Server (MSS) and are configured using the Administrative Console.

Authentication validates a user's identity based on some credentials, such as a username/password combination or a client certificate. Authorization is then used to determine which sessions each user can access.

HACloud supports the following authentication methods: None, LDAP, Single Sign-on through IIS, Single Sign-on through Windows Authentication (NTLMv2), X.509 Client Certificates, SiteMinder, and SAML.

For general information on choosing and configuring authentication and authorization methods please see Authentication and Authorization in the MSS documentation.

The following authentication methods require HACloud specific configuration: Single Sign-on through IIS and X.509.

The High Availability Deployment Blueprint contains additional important details concerning some authentication methods when deploying in an HA environment.

NOTE:If you select None as an authentication method, be aware that this choice presents limitations with User Preferences.