Using SSO with SSL Client Certificate Authentication

You can specify the SSL client certificate authentication is to be used for authentication of a Web application by modifying the deployment descriptor for the Web module login configuration via the Application Assembly Tool or WSAD. Select the CLIENT-CERT authentication type and Integral or Confidential for the User Authorization. (The Integral and Confidential settings force the application to be accessed over SSL.)

Naturally, you must configure your HTTP servers for SSL and client certificate authentication, usually over port 443, the standard HTTPS port. For Apache-based servers (such as the IBM HTTP Server), this is done via the httpd.conf configuration file. For the Domino HTTP server, ...

Get IBM WebSphere and Lotus Implementing Collaborative Solutions now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.