Authenticate the Inbound User ID and Key Using Sterling External Authentication Server

About this task

To authenticate key information about the inbound node against information stored in an LDAP database, you must configure Sterling External Authentication Server. After configuring Sterling External Authentication Server, use this procedure to configure Secure Proxy to use the authentication method you defined.

Before you configure Secure Proxy, obtain the name of the Sterling External Authentication Server definition and ensure that the Sterling External Authentication Server connection has been configured.

To configure authentication of an inbound node password using Sterling External Authentication Server:

Procedure

  1. From IBM Sterling Secure Proxy, select Configuration from the left hand-side navigation panel.
  2. Click Policies, then click View all Policies to display the list of created policies.
  3. Choose the policy you wish to edit, then click on the Edit icon.
  4. On the Policy Configuration panel, click the Advanced tab.
  5. Select Key Authentication Required before Password Authentication checkbox.
  6. Enable Key Authentication Mechanism: Through External Authentication and type the name of the key authentication definition you defined in Sterling External Authentication Server in the User Authentication section.
  7. Deselect the Through Local User Store option.
  8. Click Save.

Results

You can now associate this policy with a inbound node for which you want to perform key authentication using Sterling External Authentication Server.