cancel
Showing results for 
Search instead for 
Did you mean: 

SSO implementation combining NTLM EP5 & Active Directory

Former Member
0 Kudos

Hi,

We would like to get some recommendation from you on possibility of the following :

Our customer has already implemented SSO using NTLM & EP 5 for some web based users, and wanted to have a new setup of SSO using Microsoft Active Directory for their remaining Windows GUI users connected directly to SAP backend without going through EP.

Based on the R/3 Enterprise installation guide - post installation, there are 2 methods presented there using NTLM or Kerberos. These two using the same SAP instance parameter snc/gssapi_lib, with value gssntlm.dll (for NTLM) and gsskrb5.dl. (for Kerberos).

Related to our customer environment, would it be correct to say that we can't implement SSO using Active Directory on top of their NTLM & EP implemented solution ?

Could you provide us some alternatives / recommendations to have the remaining users into SSO solution ?

Accepted Solutions (0)

Answers (1)

Answers (1)

arieh_senyor
Member
0 Kudos

You can use SSO to EP 5 based on the active directory using IIS server and IIsproxy module. the first login would be to the iis and the user will be logged on automatically to the iis based on his domain credentials

then the iis proxy module will redirect those credentials to the portal server that will logon the user to the portal. I use EP 6.0 and it works fine for me. You can get more details on "EP 6.0 Sp2 security guide"

Former Member
0 Kudos

Hey Arieh Senyor,

Could you please tell me where i can find the good documentation on EP6SP2 with Active Directory..

Thanks

Santhosh