Content Services can be configured to authenticate using the Identity Service by configuring the authentication chain and alfresco-global.properties file.
The Identity Service allows you to configure user authentication between a supported LDAP provider or SAML identity provider and the Identity Service for Single Sign On (SSO) capabilities.
The Identity Service needs to be deployed and configured with an identity provider before being set up with other Alfresco products.
See the Identity Service documentation for more information.
Once the Identity Service has been deployed, there are two steps to configure Content Services to authenticate with it:
-
Configure the Authentication chain to the only supported value for the Identity Service: authentication.chain=identity-service1:identity-service,alfrescoNtlm1:alfrescoNtlm
Note: The authentication chain can’t contain any other values, such as Kerberos or SAML, when using the Identity Service. -
Configure the alfresco-global.properties file