IPR Authentication

There are two ways (IPR IP address or user PIN) to authenticate and authorize IP Receivers in the ETV Portal Server. IPR access control is slightly different from PC and Macintosh- based authentication (which uses the commonly employed User Name and Password mechanism). The two methods are outlined in the table below.

Table 13. Authentication Methods

Method

Description

User Interaction

Comment

 

 

 

 

User PIN

If Access Control is

When the user logs

This implementation is appropriate

 

enabled, but the IPR is not

into the system, they

for environments where multiple

 

defined in the system, then

will be prompted for

users with different privileges will be

 

Access Control works

their PIN. The user

accessing the same IPR. An example

 

based on a user PIN. This

simply enters the PIN

of this would be a shared classroom

 

PIN is defined on a per user

with the remote

where multiple teachers are

 

(not per IPR) basis, so that

control or the wireless

accessing the IPR at different times.

 

users need to be defined for

keyboard, and can then

 

 

this to work.

access the video.

 

 

 

 

 

IPR IP

The ETV Portal Server

No user interaction is

This implementation is similar to a

Address or

system determines the

required. The user

cable TV setup, e.g. if the cable plan

Host Name

content that the IPR can

simply turns on the

does not include CNN, that channel

 

view based on its IP

IPR and only the

cannot be viewed. This

 

Address or Host Name.

content that the IPR

implementation is easiest for end

 

 

user can view id

users because you do not have to

 

 

displayed.

remember user names or PINs. It is

 

 

 

appropriate for environments where

 

 

 

one or a few people with the same

 

 

 

privileges access the same IPR.

 

 

 

 

Authentication by PIN

When an end user accesses the ETV Portal Server via a IPR, the Portal Server takes the following steps to authorize users.

1.It determines if there is Authentication/Authorization information associated with the Host Name of the IPR. If so, based on the IPR Host Name, the ETV Portal Server will present the IPR with the information appropriate to its privileges. Note that the ETV Portal Server uses the least restrictive settings when providing access to the system.

2.If there is no Authentication/Authorization information associated with the Host Name of the IPR, the user will be prompted for a PIN. A PIN is a user-based mechanism to log onto the IPR. When the user enters his or her PIN, the ETV Portal Server authenticates the user against the Portal Server database.

3.Once the user is authenticated, the ETV Portal Server will check the User Groups and/ or Resource Groups that the User is associated with and the privileges associated with those groups.

4.After checking the Groups privileges, the ETV Portal Server will check for any individual user privileges above the group privileges.

5.The user will be presented with the information appropriate to their privileges. Note that the ETV Portal Server uses the least restrictive settings when providing access to the system.

120

© 2009 VBrick Systems, Inc.

Page 132
Image 132
VBrick Systems V4.4.3 manual IPR Authentication, Authentication by PIN