TIBCO Spotfire® Server and Environment - Installation and Administration

Authentication using X.509 client certificates

When Spotfire Server is set up with HTTPS and is configured to require client certificates, the information from the certificates can also be used for login purposes.

This method authenticates users by using an X.509 client certificate from the Spotfire client to Spotfire Server.

These are the general steps to configure Spotfire to use X.509 client certificates for authentication:
  1. Configure Spotfire Server for HTTPS; see Configuring HTTPS.
  2. Install client certificates on each client. For details, see the documentation provided by your operating system vendor.
  3. If you have not already done so, import the Certification Authority (CA) certificate(s) to the keystore; see Installing CA certificates.
  4. Configure Spotfire Server to require client certificates for HTTPS; see Configuring Spotfire Server to require X.509 client certificates for HTTPS.
  5. Configure Spotfire Server to use X.509 client certificates to authenticate users; see Configuring Spotfire Server to use X.509 client certificates to authenticate users.