Connect to the Outbound Node Using Information Stored in Sterling External Authentication Server

Before you begin

Configure this option:
  • Configure a user validation definition in Sterling External Authentication Server.
  • Obtain the name of the Sterling External Authentication Server definition.
  • Configure the Sterling External Authentication Server to allow connections from Secure Proxy.
  • Ensure that the policy associated with the inbound node has enabled client authentication.
  • Ensure that the public keys for Secure Proxy have been sent to the Sterling External Authentication Server and imported into the Sterling External Authentication Server key store.

About this task

If you store user credentials in an external database accessed by Sterling External Authentication Server, use this procedure to configure Secure Proxy to use these credentials to connect to the secure outbound server.

To configure the use of credentials from Sterling External Authentication Server:

Procedure

  1. From IBM Sterling Secure Proxy, select Configuration from the left hand-side navigation panel.
  2. Click Polices, then click View all Policies to display the list of created policies.
  3. Select the Policy you want to edit, click Edit icon.
  4. Click the Advanced tab.
  5. Enable the User Authentication Through External Authentication option.
  6. Type the name of the definition you defined in Sterling External Authentication Server in the External Authentication Profile field.
  7. Deselect the Through local user store option.
  8. Under the Internal User ID, select From External Authentication check-box.
  9. Click Save.
  10. From IBM Sterling Secure Proxy, select Configuration > Netmaps from the left hand-side navigation panel.
  11. On the HTTP Netmap panel, click the Outbound Nodes tab.
  12. Select the node to edit and click Edit icon.
  13. Click the Advanced tab.
  14. Identify the destination service name to use to connect the outbound node when using Sterling External Authentication Server in the Destination Service Name field.
  15. Click Save.