Strengthen LogonID Authentication Using Sterling External Authentication Server
This scenario builds on the basic PeSIT configuration by adding logonID authentication to the PNODE connection using information defined in Sterling External Authentication Server. To provide a more advanced method of securing a PeSIT connection, use Sterling External Authentication Server to authenticate certificate information or logonID credentials presented by the inbound node or to perform logonID and password mapping.

Authenticate an Inbound Certificate or LogonID Using Sterling External Authentication Server
You can authenticate an inbound connection against information stored in an LDAP database by configuring Sterling External Authentication Server to define how the connection is authenticated. The Sterling External Authentication Server definition determines the options that are enabled. Refer to the Sterling External Authentication Server documentation library for the functions that can be performed in Sterling External Authentication Server.
Authenticate a Certificate or LogonID Using Sterling External Authentication Server - Worksheet
Use the following worksheet to identify the information needed to authenticate a PeSIT connection using information in Sterling External Authentication Server. Update the policy you created in the basic PeSIT configuration for this scenario.
Configuration Manager Field |
Information |
Value |
|---|---|---|
Certificate Authentication - External Authentication Certificate Validation |
Will you validate the certificate presented by the PNODE? |
(Yes or No) |
Certificate Authentication - External Authentication Profile |
If yes, provide the Sterling External Authentication Server certificate validation definition. |
|
User Authentication - Through Sterling External Authentication Server |
Will you validate user information? |
(Yes or No) |
User Authentication - External Authentication Profile |
If yes, provide the Sterling External Authentication Server user validation definition. |