ActiveMatrix BPM: Kerberos Configuration

Note: This screen is only displayed if you selected Kerberos as the Authentication Type on the Authentication Configuration screen. The name of the Shared Resource Instance must be amx.bpm.auth.kerberos.
Field/Button Description
Kerberos Realm The name of the domain where the Kerberos configuration applies. For example, XYZCOMPANY.COM.
Key Distribution Center The name or IP address of the host running the Kerberos KDC for the Kerberos realm.
Configuration File Options
Selected Configuration File Type Identifies the location of the Kerberos generated, host configuration file, from which the remaining configuration properties will be taken. Choose between:
  • System Specific Default Location

    If the Kerberos installation is on the same machine as the Shared Resource installation.

  • Custom File Location

    If the configuration file has been copied to the same machine as the Shared Resource installation.

  • Generated

    If the configuration file is not available, but the properties are known. Creates a local file at a given location.

The following properties assume Generated has been selected. These values will be available from your Kerberos installation.
Configuration File Name The name (without path) of the file that will be generated to record the property values. You can use any name.
Default DNS Domain The domain used to expand hostnames when translating Kerberos 4 service principals to Kerberos 5 principals. Domain names should be in lower-case.
Service Principal Name (SPN) The principal name of the service that is to be protected. When a service ticket is received, it is verified, using the KDC, against the SPN specified here.
Key Tab File Name: The path to the key tab file containing the credentials of the service to be verified against the incoming request.
Further configuration of ActiveMatrix BPM and configuration of TIBCO Openspace and TIBCO Workspace (if you are using them) is contained in the TIBCO ActiveMatrix BPM Single Sign-On guide.