As of December 1, 2020, Focal Point is retired and repurposed as a reference repository. We value the wealth of knowledge that's been shared here over the years. You'll continue to have access to this treasure trove of knowledge, for search purposes only.
Join the TIBCO Community TIBCO Community is a collaborative space for users to share knowledge and support one another in making the best use of TIBCO products and services. There are several TIBCO WebFOCUS resources in the community.
From the Home page, select Predict: WebFOCUS to view articles, questions, and trending articles.
Select Products from the top navigation bar, scroll, and then select the TIBCO WebFOCUS product page to view product overview, articles, and discussions.
Request access to the private WebFOCUS User Group (login required) to network with fellow members.
Former myibi community members should have received an email on 8/3/22 to activate their user accounts to join the community. Check your Spam folder for the email. Please get in touch with us at community@tibco.com for further assistance. Reference the community FAQ to learn more about the community.
When WebFOCUS MRE is configured for trusted authentication, is there a way to override the behavior of bypassing the MRE Logon page so that additional credentials (like ACF2) can be entered and passed to WebFOCUS?
Not quite sure what you are asking here. Are you looking to combine ACF2 and Trusted for MRE SSO? Or, are you looking for Trusted MRE SSO and ACF2 to the reporting server? Or, are you looking at bypassing MRE altogether and do direct WFServlet requests with ACF2?
Maybe something else entirely?
"There is no limit to what you can achieve ... if you don’t care who gets the credit." Roger Abbott
We have the following requirements: 1. use WebFOCUS MRE through the PS Enterprise Portal (using WebFOCUS Open Portal Services) 2. log into WebFOCUS MRE via the web-based applet (ibi_login.jsp/mr_login.jsp). (MRE development via the portal is very limited.) 3. allow the users to optionally enter ACF2 credentials on the web-based applet logon page.
The portal is authenticates to Active Directory but only passes the NT User ID to WebFOCUS MRE. Therefore, MRE accounts cannot not have passwords. This makes the web-based applet login unsecure. However, the web-based applet logon pages are customized to allow ACF2 credentials to be entered and passed to a WebFOCUS reporting server.
We do not have single signon like Net-Tegrity or SiteMinder. And we don't have time to customize the portal to pass both the NT user ID and Password to WebFOCUS. (We are planning on implementing this in the future.)
My thought was to display a link to WebFOCUS MRE in the portal (in place of the WebFOCUS Pagelet) and configure WebFOCUS MRE with trusted authentication. However, since trusted authentication bypasses the logon page. I was looking for a method of allowing either the logon page or some other HTML page to be displayed that allowed the user to optionally enter ACF2 credentials and then click continue to log into MRE.
I'd be happy to discuss this over the phone. Let me know if this is an option.
The issue here seems to be complicated enough that I would strongly recommend you contact Information Builders' Customer Support Services and open a case for further assistance. We may need to look much further and in details on what you are trying to accomplish. You may either call at 1-800-736-6130, or access the online system InfoResponse at http://techsupport.ibi.com. Here is a list of information to be ready when you call: http://techsupport.ibi.com/before_you_call.jsp.
For general guidance on security, please check the following manual which may be of interest:
If you are running on releases other than 713, please let me know and I will be more than happy to locate the right version of the security manual for you.
Hope this helps.
Cheers,
Kerry
Kerry Zhan Focal Point Moderator Information Builders, Inc.
Posts: 1948 | Location: New York | Registered: November 16, 2004
I will be opening a HT case on this question tomorrow or next week. It just happened that the IBI TechSupport site was down when I began my research so I posted a question here.
Any help ont his ? I have siteminder protection for my URL. while login i provide USer details want to pass the same userid to webfocus server. I updated cgivars.wfs with following
IBI_REPORT_USER =&SM_USER (Also Tried using IBI_REPORT_USER =&WF_REMOTE_USER ) IBI_REPORT_PASS ="TRUSTED"
where SM_USER is passed in siteminder headerinfo. But this does not work.Any suggestion
TRUSTED authentication works for every platform BUT WINDOWS. I suggest you call CSS for some help. There is at least one document dedicated to implementing Siteminder, so CSS should be helpful.
"There is no limit to what you can achieve ... if you don’t care who gets the credit." Roger Abbott