Configuring preauthentication
To configure preauthentication
- Log in to BMC Helix SSO Admin Console.
- In the left navigation panel of the Add Realm or Edit Realm page, click Authentication.
- From the Authentication Type list, select PREAUTH.
- In the User ID field, enter the name of the JWT entry to be used for user identification. 
- In the Certificate field, copy the certificate of the server that signs the JWT. 
- (Optional) To allow an originating application to open a target application through iframe, in the ALLOW-FROM Domain(s) field, enter the name of the originating application. 
 You can specify the target server as follows:- * - wildcard. Allowed for all domains.
- hostname - Allowed for specified domain, ignoring port.
- hostname:port - Allowed for exact match host:port.
- proto://hostname:port - Allowed for exact match host:port.
 
- Click Save.
Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*
