Configuring Cognos® authentication properties in IBM® EMM
You must configure Cognos® authentication properties in IBM® EMM so the IBM® EMM applications can communicate with the Cognos® applications if the IBM® EMM and Cognos® applications are installed in different network domains.
1.
Complete the following tasks to configure Cognos® authentication properties in IBM® EMM:
2.
Log in to IBM® EMM as the platform_admin user.
3.
Select Settings > Configuration.
4.
Expand Reports > Integrations > Cognos version.
5.
Set the value of the Authentication Mode property by selecting either authenticated or authenticatedPerUser, as appropriate for your system.
6.
For "authenticated" only. Verify that the values in the Authentication user name and Authentication datasource name fields match those of the user and data source you created in the previous task, Creating the reports system user.
7.
Set the value of the Enable form authentication property.
This setting indicates that IBM® EMM security uses form-based authentication in place of cookies. You set this property to True when either of the following is true.
*
When the IBM® EMM is not installed in the same network domain as the Cognos® applications.
*
When Cognos® is accessed using an IP address (within the same network domain) instead of the Fully Qualified Hostname (which is being used to access the IBM® EMM applications), even if both the IBM® EMM applications and the Cognos® installation are on the same machine.
However, when the value is True, the login process to Cognos® Connection passes the login name and password in clear text and therefore is not secure unless Cognos® and the IBM® EMM are configured to use SSL communication.
Even with SSL configured, the user name and password appear as clear text in the HTML source code when you "view source" in a displayed report. For this reason, you should install Cognos® and IBM® EMM in the same network domain.
Note that when the Enable form authentication property is set to True, the Authentication mode property automatically behaves as though it were set to authenticated, and you must perform the step required for this mode, described in Creating the reports system user.
8.
9.
For "authenticatedPeruser" only. Assign the ReportUser role to the default asm_admin user. You perform this step so that you can test reports: you need a user with access to both the IBM® EMM application and report data. The platform_admin user does not have access to the IBM® EMM application features.