K2 blackpearl Product Documentation: Installation and Configuration Guide
K2 Requirements for AD

K2 requirements for Active Directory

Active Directory is interrogated for a few parameters when a client side certificate is passed. The items that will be required are:

  1. the URL from which the service call is made,
  2. the User’s display name and then
  3. a common name and or e-mail address.

If any of the items listed are not available, then an error will be thrown and the certified communication thread will not be established.
Shown in the diagram below, the client which may be internal or external to the domain passes a web resource service request. For the connection to be established the client must do the following:

  1. Provide a Client and or Server Certificate
    1. Client Certificate enables Authentication
    2. Server Certificate identifies the service request as from a trusted source
  2. Once the authenticity of the certificates has been verified, the certificate is attached as part of the communication and passed so that interaction between the client and the requested resources can take place.

SSL 

 

 


K2 blackpearl Product Documentation: Installation and Configuration Guide 4.6.10