I do security stuff most of the time. As part of this, I often come along things like SSO, Encryption, Proxies and the like. I really enjoy my Job especially because of the complexity of the components it involves, but sometimes it turns out into a real nightmare. Why? You will see, in this not so much technical, but more entertaining blog.
I had a conversation with a customer lately and it went like this:
MHC (Most Honored Customer): We have an SAP Enterprise Portal and we like it to be connected to the Internet – SECURLEY!
MME (Me the Mighty Engineer): Ok I say – no big deal so far.
MHC: We use Kerberos Integrated Authenticatio in our internal LAN (for all you who do not kn ow, this is the way MS-Users are Authenticated in a MS Windows Active Directory Environment) and of course we don’t want our users to have to authenticate again when they call up the portal page.
MME: Ok, there is ways to do this
MHC: Yes, and we want our external users to first use eTokens with One Time Passwords before they can access the Portal from the Internet.
MME: Hmmmpf
…
I will continue this shortly