User guide
Chapter 1: Overview
1-24
Password Authentication and Certificate Authentication
This authentication method only assumes authentication has been successful when both password
authentication and certificate authentication have been successfully completed.
This method of authentication firstly requests the user to receive certificate authentication. When
certificate authentication is successful, the user is then requested to complete password authentication.
When password authentication has been completed, the authentication process has been successful. If
password authentication fails, the authentication process may fail.
When the user has registered only one certificate, the user can also use the registered certificate
without displaying the certificate selection window. For details about how to display the certificate
selection window, refer to "Certificate Selection Windows".
Remark
When the Web browser is Netscape Communicator, the certificate selection window may be displayed
twice. If it occurs, operate same action for both windows.
User Information
User information is managed in the SSO repository, and includes the user ID, password and
authentication method for each user managed by Interstage Single Sign-on. The following user
information can be set for each user according to system operation requirements.
The following table lists the main setting items for user information.
Table 1-3 User Information
Item Description
Authentication method One of the following authentication method:
Password authentication
Certificate authentication
Password authentication or certificate authentication
Password authentication and certificate authentication
User ID User ID of the user.
Only one user ID must be set for a user.
Password Password of the user.
Only one password must be set for a user.
Information to identify the user
at certificate authentication
Certificate information that can identify the user with the certificate
used by the user during certification authentication.
This information does not need to be set when certificate
authentication is not applied.