Symantec Access Management

 View Only
  • 1.  Autentication Web Services

    Posted Nov 29, 2024 04:10 AM

    Hi all. I need to protect a mobile application with Siteminder. The customer requirement is: the user insert his credentials in the app, the app send the user credentials to sitemnder that forward them to an external validation service. this service will send a token thatneeds to be sent backtothe app.

    Now, I think that the solution would be to use the authentication web service. 

    My question is: can I protect the web service with a custom auth schema that takes the credentuialsfrom the APP? how can Iconfigurethis?

    Thanks



  • 2.  RE: Autentication Web Services

    Broadcom Employee
    Posted Dec 06, 2024 03:25 AM

    Flavio,

    if you need in any case to develop a custom authentication scheme you could think to receive the credentials in the basic format. In the code you can define this type of configuration. In the code you can then create the request, get the token and manage how to pass it back to the mobile app. 

    ciao

    Franco




  • 3.  RE: Autentication Web Services

    Posted Dec 06, 2024 03:35 AM
    Hi Franco.
    I finally managed to get the credentials and obtain the session token.
    Question: is it possible to customize the response sent back to the App? Do you (or anyone) have an example?

    Many thanks


    Flavio Giuseppe BUSINELLI
    Infrastructure and Security Consultant | GBL CIS Italy

    Capgemini Italia | Milano
    Mob.: + 39 347 3938083
    www.capgemini.com<http: www.capgemini.com>

    Email flavio.businelli@capgemini.it<mailto:flavio.businelli@capgemini.it>
    Address Via Nizzoli 6 - 20147 Milano
    [cid:image001.png@01DB47C2.154543D0]
    ____________________________________________________________________
    Connect with Capgemini:
    [cid:image002.png@01DB47C2.154543D0]<https: www.capgemini.com insights-and-resources blogs>[cid:image003.png@01DB47C2.154543D0]<https: www.twitter.com capgemini> [cid:image004.png@01DB47C2.154543D0] <https: www.facebook.com capgemini> [cid:image005.png@01DB47C2.154543D0] <https: www.linkedin.com company capgemini> [cid:image006.png@01DB47C2.154543D0] <https: www.youtube.com capgeminimedia> [cid:image007.png@01DB47C2.154543D0] <https: www.slideshare.net capgemini> [cid:image008.png@01DB47C2.154543D0] <https: plus.google.com +capgeminiglobal>

    This message contains information that may be privileged or confidential and is the property of the Capgemini Group. It is intended only for the person to whom it is addressed. If you are not the intended recipient, you are not authorized to read, print, retain, copy, disseminate, distribute, or use this message or any part thereof. If you receive this message in error, please notify the sender immediately and delete all copies of this message.