Previous Topic Next topic Print topic


OS ESM Security Manager

You will need to go to the MFDS Administration Console and create a Security Manager (under Configure Security Options) that uses the OS ESM module ( osesm). OS ESM has very few configuration options, so typically this will just use the defaults for most of the fields:

Note that we've named this manager "Windows", to indicate that it verifies users using Windows. Of course you can use any name you like; you may also want to enter an explanatory Description.

Currently, the only configuration option for the OS ESM module is to enable passtoken support, which can be done by adding these lines to the "Configuration Information" text area:

[Passtoken]
Enable=self

Passtokens are useful for providing single sign-on capability between the MFDS and ESMAC administrative consoles, among other things. However, in the configuration described in this document, we will let the MLDAP ESM module manage passtokens, because it can control passtoken permissions on a per-user basis. (The OS ESM module only can enable or disable passtokens globally.) By not enabling passtokens for OS ESM, which is the default, we will let it defer passtoken operations to the MLDAP ESM.

Previous Topic Next topic Print topic