Cisco Cisco Prime Optical 9.8 Technical References

Page of 8
   
7
Cisco Prime Optical 9.8 Basic External Authentication
OL-29220-01
Local Authentication Limitations
Step 1
If the Prime Optical server is running, enter the opticalctl stop command to stop the server.
Step 2
In the /opt/CiscoTransportManagerServer/tomcat/webapps/SSO/WEB-INF/deployerConfigContext.xml 
file, go to the “authenticationHandlers” property section and comment the “jdbcAuthenticationHandler” 
bean class definition by adding the enclosing <!-- and --> symbols:
<ref bean="jdbcAuthenticationHandler"/>
Step 3
Enter the opticalctl start command to restart the Prime Optical server.
Local Authentication Limitations
When external authentication is enabled, the local authentication system is subject to the following 
limitations:
Password aging rules and login preferences do not work, because they are demanded of the external 
access server. For this reason, these rules must remain disabled on the Prime Optical client. See 
 to disable these rules.
The password change feature changes the local password only and does not affect the access server 
password. 
Although authentication is external, authorization is local. For example, user privileges are managed 
locally. The external server only grants or denies access. It does not recognize different access 
privileges for different users. 
Related Documentation
See 
 for a list of Prime Optical 9.8 guides.
Obtaining Documentation and Submitting a Service Request
For information on obtaining documentation, submitting a service request, and gathering additional 
information, see the monthly What’s New in Cisco Product Documentation, which also lists all new and 
revised Cisco technical documentation, at:
Subscribe to the What’s New in Cisco Product Documentation as a Really Simple Syndication (RSS) feed 
and set content to be delivered directly to your desktop using a reader application. The RSS feeds are a free 
service and Cisco currently supports RSS version 2.0.