13.1.1.5.1. Procedure – Modifying authentication settings
Navigate to the MS, and select the parameter from parameters.
component of the host runningSelect the desired authentication method in the
field.If you selected AS in the section.
, you have to configure access toNote Using these authentication methods requires an already configured AS instance. See Chapter 15, Connection authentication and authorization for details on using and configuring AS.
Enter the IP address or the hostname of the Authentication Server into the field. By default, AS accepts connections on port
1317
.Select the certificate that MS will use to authenticate itself from the field.
Select the CA group that contains the CA that issued the certificate of AS from the field. MS will use this group to verify the certificate of AS.
If you are running more than one authentication backend (more than one AS instances), create a new router in the MC component that will direct the authentication requests coming from MS to the appropriate AS instance.
Add a new condition to the router, and enter
Authentication-Peer
into the field, andMS
into the value field.For details on configuring AS routers, see Section 15.3.1.2, Configuring routers.
Note MS sends also the username in the authentication requests. This can be used to direct authentication requests to different AS instances based on the username.
Click
, commit and upload your changes, and reload the component.
© 2021 BalaSys IT Security.
Send your comments to support@balasys.hu