Authentication options#
PEM supports Kerberos and two-factor authentication. For implementation instructions, see:
On Linux:
:ref:`Configuring the PEM server to use Kerberos authentication <Configuring the PEM server to use Kerberos authentication>`
:ref:`Configuring the PEM server to use Windows Active Directory domain services for Kerberos authentication (SSPI) <Configuring the PEM server to use Windows Active Directory domain services for Kerberos authentication (SSPI)>`
On Linux and Windows:
:ref:`Configuring the PEM server to use two-factor authentication <Configuring the PEM server to use two-factor authentication>`
- Configuring the PEM server to use Kerberos authentication
- Configuring the PEM server to use Windows Active Directory domain services for Kerberos authentication (SSPI)
- 1. Install Active Directory, the PEM server, and the PEM backend database server
- 2. Create users in Active Directory to map with service principals
- 3. Extract key tables from Active Directory
- 4. Configure the PEM backend database server
- 5. Obtain and view the initial ticket
- 6. Configure the PEM server
- 7. Browser settings
- Configuring the PEM server to use two-factor authentication