Page 1 of 1
Single Sign-on
Posted: Tue May 27, 2014 7:09 pm
by konjis1
My co worker and i are running in to an issue. We currently have users defined in CEM. Well we want to utilize Single sign-on for security reasons. The issue we are running into is that once we enabled single sign-on and a user selects the namespace, the user's permissions are non existent once they are authenticated/successfully logged in. What are we missing as far as the connection of authentication and Cognos Permissions within the application for the user?
Thanks in advance.
Info:
Cognos Express 10.2.1.1
Windows Server 2008 R2
Re: Single Sign-on
Posted: Tue May 27, 2014 7:12 pm
by declanr
Have you set up security in TM1? e.g. imported the cognos groups that those users belong to and given those groups read/write access to whatever they should have.
Re: Single Sign-on
Posted: Tue May 27, 2014 7:40 pm
by konjis1
declanr wrote:Have you set up security in TM1? e.g. imported the cognos groups that those users belong to and given those groups read/write access to whatever they should have.
Yes, prior to enabling Single Sign-on, we imported groups with users and gave those users read/write access in the CEM enviroment. Currently the namespace options for a user to use are:
1. CognosExpress - which was the default prior to SS
2. Southern - which is our AD authentication for SS
We followed the Kerberos SSO documentation from IBM.