3.6 Managing Direct Access to the Identity
Server
Users usually log into the Identity Server when they request access to a Web resource. They are
redirected by the Access Gateway from the resource to the Identity Server to provide the required
credentials for the resource. After they are authenticated, they are not prompted for credentials
again, unless a resource requires credentials that they haven't already supplied.
However, users can log directly into the Identity Server and access the User Portal, or they can
access information about available Web Services Description Language (WSDL) services. This
section describes how to manage access to these pages.
Section 3.6.1, "Logging In to the User Portal," on page 133
Section 3.6.2, "Specifying a Target," on page 134
Section 3.6.3, "Blocking Access to the User Portal Page," on page 135
Section 3.6.4, "Blocking Access to the WSDL Services Page," on page 136
3.6.1 Logging In to the User Portal
Users can log directly in to the Identity Server when they enter the Base URL of the Identity Server
in their browsers. For example, if your base URL is
users can log in directly to the Identity Server by entering the following URL:
http://doc.provo.novell.com:8080/nidp/app
This URL prompts the user to authenticate with the credentials required for the default contract.
User Portal
Figure 3-4
When users log directly into the Identity Server, the users need to use the default card for
authentication. This is the card that appears in the top left frame, and the credentials it requires are
displayed in the top right frame.
On a newly installed system, cards for all the authentication contracts that are installed with the
system are displayed. To avoid confusing your users, you need to disable the Show Card option for
the contracts you do not want your users to use. In the Administration Console, click Devices >
Identity Servers > Edit > Local > Contracts > [Name of Contract] > Authentication Card.
http://doc.provo.novell.com:8080/nidp
Configuring Local Authentication 133
,
Need help?
Do you have a question about the ACCESS MANAGER 3.1 SP2 - IDENTITY SERVER GUIDE 2010 and is the answer not in the manual?
Questions and answers