Page 1 of 1

Single Sign-on

Posted: Tue May 27, 2014 7:09 pm
by konjis1
My co worker and i are running in to an issue. We currently have users defined in CEM. Well we want to utilize Single sign-on for security reasons. The issue we are running into is that once we enabled single sign-on and a user selects the namespace, the user's permissions are non existent once they are authenticated/successfully logged in. What are we missing as far as the connection of authentication and Cognos Permissions within the application for the user?

Thanks in advance.

Info:
Cognos Express 10.2.1.1
Windows Server 2008 R2

Re: Single Sign-on

Posted: Tue May 27, 2014 7:12 pm
by declanr
Have you set up security in TM1? e.g. imported the cognos groups that those users belong to and given those groups read/write access to whatever they should have.

Re: Single Sign-on

Posted: Tue May 27, 2014 7:40 pm
by konjis1
declanr wrote:Have you set up security in TM1? e.g. imported the cognos groups that those users belong to and given those groups read/write access to whatever they should have.
Yes, prior to enabling Single Sign-on, we imported groups with users and gave those users read/write access in the CEM enviroment. Currently the namespace options for a user to use are:

1. CognosExpress - which was the default prior to SS
2. Southern - which is our AD authentication for SS

We followed the Kerberos SSO documentation from IBM.