This documentation supports the 22.1 version of BMC Helix Single Sign-On, which is available only to BMC Helix customers (SaaS). To view an earlier version, select the version from the Product version menu.

Configuring certificate-based authentication



As a BMC Helix Single Sign-On administrator, you can configure certificate-based authentication which is considered the most secure authentication among all authentication types supported by BMC Helix Single Sign-On.

Important

To use the certificate-based authentication, an end user browser must have a valid Public Key Certificate. The process of obtaining the Public Key Certificate is out of scope this documentation.  


To configure certificate-based authentication, complete the following tasks:

Task

Description

Reference

1

As a system administrator, configure Tomcat that hosts the BMC Helix SSO server.

2

As a BMC Helix SSO administrator, configure a realm for certificate-based authentication.

3

As a BMC Helix SSO administrator, validate the CA certificate if required.

To configure certificate-based authentication, complete the following tasks:

Task

Description

Reference

1

As a BMC Helix SSO administrator, configure a realm for certificate-based authentication.

2

As a BMC Helix SSO administrator, validate the CA certificate if required.