Depending on the overall authentication setup on the printer, the user is required to provide authentication either
before accessing the home screen or when accessing an Lexmark Intelligent Capture profile from the printer.
Configuring Lexmark Intelligent Capture servers for Kerberos authentication
When using Kerberos authentication, you may need to configure Kerberos on each Lexmark Intelligent Capture server
in your system.
The Lexmark Intelligent Capture server requesting a ticket must have the KDC address and realm available in order to
request a Kerberos ticket. Often, the KDC address and realm can be determined from the ticket forwarded from the
printer. In this case, no configuration is necessary. A warning is included in the log indicating that the server is attempting
to determine the KDC address and realm from a forwarded ticket.
To manually configure each Lexmark Intelligent Capture server for Kerberos authentication, do one of the following:
•
Create a Kerberos configuration file for the server. This file may be a duplicate of the file uploaded to configure
Kerberos on the printer, but we recommend a minimal configuration specifying only the KDC address and realm.
The configuration file must be named krb5.ini, and it should be placed in the folder \Lexmark\Solutions\Security
where Lexmark Intelligent Capture is installed on each server. You may have to create the Security folder.
Note:
If you need to read the Kerberos configuration file from another location, see the Apache Tomcat
documentation for more information.
•
Set the KDC address and realm from the script.
Installing Lexmark Intelligent Capture
43