Microsoft Active Directory and Kerberos/SPNEGO SSO
Kerberos/SPNEGO authentication requires a Key Distribution Center (KDC) and an authorization server.
The IBM® Engineering Lifecycle Management (ELM) supports a deployment with Microsoft Active Directory domain controllers that run on a Microsoft Windows Server system only. Each Active Directory domain controller functions as a Kerberos KDC and an authorization server. Active Directory also functions as an LDAP server.
Administration of Active Directory is involved; consult the Microsoft
documentation. Also, see Chapter 4, Setting up Microsoft Active
Directory and Kerberos KDC
, of Implementing Kerberos in a WebSphere Application
Server Environment.