Microsoft Active Directory and Kerberos/SPNEGO SSO

Kerberos/SPNEGO authentication requires a Key Distribution Center (KDC) and an authorization server.

The IBM® Engineering Lifecycle Management (ELM) supports a deployment with Microsoft Active Directory domain controllers that run on a Microsoft Windows Server system only. Each Active Directory domain controller functions as a Kerberos KDC and an authorization server. Active Directory also functions as an LDAP server.

Administration of Active Directory is involved; consult the Microsoft documentation. Also, see Chapter 4, Setting up Microsoft Active Directory and Kerberos KDC, of Implementing Kerberos in a WebSphere Application Server Environment.