This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal


Jun 1, 2015, 3:16 PM
5 Posts

Re: SAML and Admin Users

  • Category: Domino Server
  • Platform: Linux
  • Release: 9.0.1
  • Role: Administrator
  • Tags: SAML
  • Replies: 3

All the end users are web only.  The Admins and Developers have separate Notes IDs just for Admin/Dev stuff, but they also need to log in with these over http to resolve user issues.  Active Directory is managed by a different section and a large Helpdesk team have access to change user passwords etc.  Since the Admin/Dev accounts have Manager access to everything, for security we would like to separate them out.

I had already floated the idea of a separated Admin server, but management in the development team said no!  Apparently they *need* to access each server.  Don't ask me to explain developers.

I was sort of expecting there to be a 'local login' URL to optionally bypass ADFS but apparently not.  My other thought was whether the LTPA Token document could be copied to another server so you could have a login server then switch.

Jun 5, 2015, 12:09 PM
4 Posts
Re: SAMl and Admin Users
Hi

What you can do is to have a "Login Server" and use Web Server Single Sign-on (LTPA Token) to access the other servers under the same dns domain.

http://www-01.ibm.com/support/knowledgecenter/SSKTMJ_9.0.1/admin/conf_creatingawebssoconfigurationdocument_t.dita

Just add the the new login server in the participating Servers

It is like, accessing https://login.server.com for login and then just switch to your desired participating servers https://other.server.com

This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal