Multi Server SSO

We are tying to get Multi Server SSO up and running. I think it not working because we don’t have a DNS domain. Not working means that the login screen just keeps reappearing.

We have not brought in our domain ‘acme.com’ inside. Our DNS just serves server names without a domain.

Is it possible to just leave our Web SSO Configuration for LtpaToken document field DNS Domain blank or maybe just a “.”?

Our ultimate goal is to get our new Quickr server to have Sametime awareness.

Not using LDAP. Sametime server is at 7.5.1 with Domino 6.5.2. Our Quickr server is 8.2 on Domino 8.5.1.

Thanks in advance, Chad…

Subject: Multi Server SSO

Ok, so we created a DNS domain. We called it ‘internal’. We changed our two server to reflect the new DNS domain. We change the Server Documents Basic, Ports and Internet Protocal tabs to show servername.internal.

Now our Quickr server logs in fine, using Multi Web SSO, but our Sametime server still just redisplays the login screen.

I guess we’ll run diags on our Sametime server and, if nesessary, post the results.

Chad…

Subject: SSO

Once you configure the server for SSO, you need to use the FQHN to access it i.e.

http:\server.acme.co.uk

If you dont do this, after entering your username & password, it simply refreshes the screen without error and asks you for your credentials again…

Alan

Subject: Multi Server SSO

Thanks for the quick reply!

At first, when I changed my Quickr and Sametime servers to Multi Server SSO they would not login - login screen just kept redisplaying.

Now, and I’m not sure how, but I got my Quickr server to login using Multi Server SSO. So my browers shows the Quickr server’s cookie and it’s DomAuthSesID. The cookie shows our correct DNS entry - quickrserver.internal

But I when I turn on Multi Server SSO on our Sametime server we can’t login. No cookie. Just the redisplay of the login screen.

Again, we are trying to get Sametime Awareness on our Quickr server. Sametime is at v7.5.1 on domino server v6.5.2. Our Quickr server is v8.2 on domino 8.5.1. We are not using LDAP.

Chad…

Subject: RE: SSO

I cant remember much about Quickr \ Sametime integration as it a while since I’ve done it. But the same rules apply to Sametime for SSO as with Quickr. Use the servers full FQHN to access in the browser, ensure the server doc is configured to use the FQHN, SSO config doc should include all servers that are part of the SSO config. all servers must use the same suffix i.e. quickr.acme.com , sametime.acme.com

Are all servers using the same directory for authentication ??

Alan

Subject: Multi Server SSO

Hey Allan, Thanks for posts.

Working with IBM they stated that I need two parts to our DNS Domain name. I’m currently trying to use .internal as our DNS domain name (the company I’m working with is currently bringing in their DNS domain name internally). I’m setting up a test for a two part name - .acme.com . I will post our findings.

Chad…