13.1.1.5.1. Procedure – Modifying authentication settings
Navigate to the ZMS, and select the parameter from parameters.
component of the host runningSelect the desired authentication method in the
field.If ZAS in the section.
has been selected, configure access toNote Using these authentication methods requires an already configured ZAS instance. See Chapter 15, Connection authentication and authorization for details on using and configuring ZAS.
Enter the IP address or the hostname of the Zorp Authentication Server into the field. By default, ZAS accepts connections on port
1317
.Select the certificate that ZMS will use to authenticate itself from the field.
Select the CA group that contains the CA that issued the certificate of ZAS from the field. ZMS will use this group to verify the certificate of ZAS.
If more than one authentication backends are run (more than one ZAS instances), create a new router in the ZMC component that will direct the authentication requests coming from ZMS to the appropriate ZAS instance.
Add a new condition to the router, and enter
Authentication-Peer
into the field, andzms
into the value field.For details on configuring ZAS routers, see Section 15.3.1.2, Configuring routers.
Note ZMS sends also the username in the authentication requests. This can be used to direct authentication requests to different ZAS instances based on the username.
Click
, commit and upload the changes, and reload the component.
Published on May 30, 2024
© BalaSys IT Ltd.
Send your comments to support@balasys.hu