22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

directory to a Notes hierarchical name can be found above in 11.9.4, “Domino<br />

name mapping” on page 477.<br />

7.6 A single sign-on scenario<br />

To help highlight and demonstrate the power and importance of a single sign-on<br />

solution, this section provides a high level discussion of one potential SSO<br />

scenario. A more detailed scenario of an overall secured collaborative solution is<br />

given in Part 4, “A secure scenario” on page 579.<br />

In the basic SSO scenario we describe here, there is a Domino-based<br />

collaborative infrastructure made up of Lotus Domino and Lotus Sametime, upon<br />

which the enterprise then decides to implement a WebSphere Portal<br />

environment. An LTPA SSO option is chosen to tie the technologies together and<br />

is then implemented to provided a seamless interaction for users.<br />

We now examine how this new infrastructure would function, by first examining<br />

the basic interactions between the user and the portal server, as shown in<br />

Figure 7-3.<br />

Web Browser<br />

1-Authentication<br />

4-LTPAToken<br />

2-Credential<br />

Verification<br />

WebSphere Portal<br />

Credential Service<br />

5-LTPAToken<br />

WebSphere<br />

Portal<br />

3-Authentication<br />

Success<br />

Authentication Directory<br />

Figure 7-3 Browser/Portal interaction with LTPA SSO<br />

In “1-Authentication”, the user makes a request to the portal and provides a set of<br />

authentication credentials. The portal server then verifies the credentials (2), and<br />

assuming successful authentication (3), it creates an LTPA token. This LTPA<br />

token is then not only sent back to the client browser (4), but is also placed into<br />

the Portal’s credential service (5).<br />

Chapter 7. Single sign-on 305

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!