Configure your browser to authenticate to API Gateway

This section describes how to configure your browser to authenticate to API Gateway acting as the Kerberos service.

Configure Internet Explorer

  1. Open Internet Explorer on a machine connected to your Kerberos realm (AXWAY.COM).
  2. Click Tools > Internet Options.
  3. On the Advanced tab, select Enable Integrated Windows Authentication, and click OK.
  4. Restart Internet Explorer, and click Tools > Internet Options.
  5. On the Security tab, click Local Intranet > Sites > Advanced.
  6. In Add this website to the zone, enter your host name (http://gateway.axway.com), and click Add.You do not have to enter the port or the relative path, and you can use wildcards for the host name (http://*.axway.com).
  7. Note   Ensure the host name matches the SPN you mapped to the user account in Active Directory. The SPN must also match the host name the client browser authenticating to API Gateway specifies in the URL. See Map an SPN to the user account.
  8. Click Close, and on the Security tab, click Local Intranet > Custom Level.
  9. Select Automatic login only in Intranet zone, and click OK.

Configure Firefox

  1. Open Firefox on a machine connected to your Kerberos realm (AXWAY.COM).
  2. In the address bar, enter about:config. If you get a warning prompt on changing the advanced settings, accept it.
  3. Right-click the preference name network.negotiate-auth.trusted-uris, and select Modify.
  4. Enter your host name (http://gateway.axway.com). If you have multiple entries, separate them with a comma.
  5. Note   Ensure the host name matches the SPN you mapped to the user account in Active Directory. The SPN must also match the host name the client browser authenticating to API Gateway specifies in the URL. See Map an SPN to the user account.
  6. Click OK.

You are now ready to test your configuration works as expected. See Test the configuration.

Related Links