IntegratedSecurityMode

This parameter sets the user authentication mode to be used by the IBM® Cognos® TM1® server.

Parameter type: optional, static

Although the parameter name focuses on Integrated Security Mode, the 2, 3 and 4 settings are used to set other kinds of security.

Note: If you change the security mode without restarting the IBM Cognos TM1 server, the change applies only to new client connections. If you want to ensure that all clients are authenticated with the new security mode, all clients must be logged off by the administrator.

Use the following format to set this parameter:

IntegratedSecurityMode=x

where x can be a value for one of the following security modes.

Cognos Business Intelligence 8 and 10 are supported.

Security Mode

Description

1

The server uses secure mode (standard Cognos TM1 security).

With this authentication, the Cognos TM1 server checks the user name and password against the user names and passwords in the Cognos TM1 database.

2

This mode allows you to switch back and forth between integrated login and native Cognos TM1 security.

3

The server uses Integrated Login.

Integrated Login uses Microsoft Windows network authentication to control access to Cognos TM1 data.

If you use this security mode, you must also set the SecurityPackageName parameter.

For more details, see Integrated Login.

4

The server uses IBM Cognos BI security authentication.

Considerations when using this mode:

In Cognos TM1, Cognos BI users can belong only to Cognos BI groups and any of the three internal Cognos TM1 administrator groups (ADMIN, DataAdmin and SecurityAdmin). Membership in Cognos TM1 user (non-administrator) groups is not supported for Cognos BI users when they log in to Cognos TM1 .

You can not use Cognos TM1 to permanently assign a Cognos BI user to another Cognos BI group. Any user assignment you make in Cognos TM1 to a Cognos BI group is not saved back to Cognos BI. When a Cognos BI user logs in to Cognos TM1, the group assignments in Cognos BI override any Cognos BI group assignments made in Cognos TM1 .

5

The server uses IBM Cognos BI security authentication and supports user groups from both Cognos TM1 and Cognos BI.

Use security mode 5 when you are running IBM Cognos TM1 Applications with IBM Cognos BI security.

Considerations when using this mode:

  • In Cognos TM1,Cognos BI users can belong to both Cognos BI and Cognos TM1 groups.
  • You can not use Cognos TM1 to permanently assign a Cognos BI user to another Cognos BI group. Any user assignment you make in Cognos TM1 to a Cognos BI group is not saved back to Cognos BI. When a Cognos BI user logs in to Cognos TM1 , the group assignments in Cognos BI override any Cognos BI group assignments made in Cognos TM1.
  • If IntegratedSecurityMode=5 is used for the IBM Cognos TM1 Server and IBM Cognos TM1 Applications, it is not possible to assign rights to native TM1 groups within the Manage rights dialog. Only Cognos Groups, imported into the TM1 Server, are available.