Setting up end user authentication


As a SaaS administrator, you can configure BMC Helix SSO to authenticate end users by using the following authentication methods:

  • AR
  • Certificate-based
  • LDAP
  • Local
  • Kerberos
  • OpenID Connect
  • Pre-authentication
  • SAML 2.0

The following table describes the tasks that you perform before you set up end user authentication:

Task

Task description

Reference

1

If you have BMC Helix SSO in multitenant mode, if required, create a tenant, and switch to a BMC Helix SSO tenant in which you would like to configure authentication.

If you have a single default tenant, skip this task.

2

Configure the BMC Helix SSO server settings after you complete the installation of BMC Helix SSO application.


The following table describes the end-to-end tasks that you need to perform to configure any authentication in BMC Helix SSO.

Task

Task description

Reference

1

Add and configure a realm for which you want to configure an authentication method.

2

Configure the settings to enter general details of a realm.

3

Configure the authentication for your suitable authentication type.

4

Enable AR authentication to bypass other primary authentication methods configured for a realm.

5

Configure the settings to allow BMC Helix SSO server to launch applications in iframes.

6

Enable BMC Helix SSO to transform the userID to match the login ID for setting up the authentication method.

7

Change the default branding of the BMC Helix SSO login page to customize it according to your company's standards and requirements.

8

Configure an authentication chain for a realm when you need to configure multiple authentication methods for a realm.

9

Enable BMC Helix SSO to access additional user data of authenticated users and store it in the BMC Helix SSO database.


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*