Setting up an SSO authentication environment

Establishing SSO authentication for Informix® involves configuration of a secured Key Distribution Center computer and connectivity files, along with generation of client and server service principals.

Before you begin

About this task

The overall process in deploying Kerberos SSO for Informix® is as follows:

Procedure

  1. Configure the computers on the network to function with the Kerberos 5 authentication protocol.
    This involves setup of a secured computer to host the Key Distribution Center (KDC). It is possible that your network already is set up with a Kerberos mechanism.
  2. Create client user principals and the Informix® service principal in the KDC (see Preparing the Informix DBMS for Kerberos authentication).
  3. Configure the sqlhosts information and Generic Security Services communications support module (GSSCSM) on the computer hosting the database server (see Configuring the HCL Informix instance for SSO).
  4. Configure the Informix® service principal key and ensuring it is on the computer hosting the database server.
  5. Configure a database client program that functions with GSSCSM (see Clients supporting SSO).

Example

What to do next