COGNOiSe.com - The IBM Cognos Community

IBM Cognos Analytics Platform => Cognos Analytics => Administration and Security => Topic started by: sambias on 24 Apr 2017 04:48:12 AM

Title: Cognos and Active Directory Federation Services
Post by: sambias on 24 Apr 2017 04:48:12 AM
Do you know If It's possible to configure Cognos 11 to use Active Directory Federation Services as  authentication provider?

Thanks,
Samuele
Title: Re: Cognos and Active Directory Federation Services
Post by: Bluefyre on 24 Apr 2017 01:22:23 PM
Yes, and someone correct me if I am wrong, but if I am not mistaken, you will need a custom Java authentication provider like MotioCAP. At least that is what we use to get a Federation identity token from another web application of ours.

FYI with MotioCAP and Cognos 11 though, it currently doesn't work with 11.0.6, the latest version. Just wanted to add that in case it is something you look into. We had to roll back to 11.0.5 to get it working.
Title: Re: Cognos and Active Directory Federation Services
Post by: fputhod@cpacanada.ca on 03 May 2017 08:17:10 AM
I had asked IBM about SAML or anything else supported by ADFS, they said no, one will need custom java auth.
Title: Re: Cognos and Active Directory Federation Services
Post by: MFGF on 03 May 2017 09:33:44 AM
Quote from: FloCog on 03 May 2017 08:17:10 AM
I had asked IBM about SAML or anything else supported by ADFS, they said no, one will need custom java auth.

Interesting! I thought the R6 release introduced support for IBM BlueID, which supports SAML2?

https://www.ibm.com/support/knowledgecenter/en/SSEP7J_11.0.0/com.ibm.swg.ba.cognos.ca_new.doc/c_ca_nf_11_0_x.html

Maybe this is just for the Cloud version of CA?

MF.