Using an authentication server and authorization server

An authentication server enables users to log in to Storage Navigator with the same password as the password that they use for other applications. The authentication server must be configured for each user.

The following figure shows login workflow without an authentication server:

Logging in when an authentication server is not used

The following figure shows login workflow with an authentication server:

Logging in when an authentication server is used

If an authorization server works together with an authentication server, the user groups that are registered in the authorization server can be assigned to a user for Storage Navigator.

The following figure shows login workflow when an authentication server and an authorization server are used in combination:

Logging in when an authentication server and an authorization server are used in combination

You can use the authentication server without knowing the host names and port numbers, if you register the information of the authentication server as an SRV record in the DNS server. If you register multiple numbers of authentication servers to the SRV record, you can determine the authentication server to be used, based on the priority that has been set in advance.