To access the Denodo Scheduler administration tool an initial screen (Denodo Scheduler initial screen) is shown in which the user will have to enter his/her credentials. There are two users for this web administration tool: one with login “admin” and password initially set to “admin” (which can be changed after the user logs in by clicking on the button Change password) and another one with login “guest” and password initially set to “guest” (this password can only be changed by the “admin” user). This user can only connect to servers and not to change the servers list nor to change his/her password.
After the user logs in, he/she is shown a screen with a list of Scheduler servers to choose from, as shown in Servers screen. If the user authenticated in the web administration tool is the “admin” user, a link Edit servers list is also shown. Following this link the administrator can manage the list of Denodo Scheduler servers to which the tool may connect (he/she can edit or remove the existing servers, or add new ones).
After choosing the desired server, the user will have to enter his/her credentials for connecting to it, as shown in Authentication screen. There is a local user out of the box (with login “admin” and password initially set to “admin”) with administration rights for the Scheduler server, but it is also possible to delegate the authentication to a Virtual DataPort server. For information about how to create users in Virtual DataPort using its Administration Tool see the Virtual DataPort Administration Guide.
According to this, there are two types of authentication:
Local-based authentication. The user is authenticated against the Scheduler Server. To choose this type of authentication the check box Local Authentication must be checked. Note, that with this type of authentication only the local user “admin” can be used.
VDP-based authentication. It allows accessing to Scheduler with an existing Virtual DataPort user (including the Virtual DataPort “admin” user). In this case, the Scheduler server delegates the authentication to a Virtual DataPort server (see section Virtual DataPort Settings for instructions about how to configure it). To choose this type of authentication the check box Local Authentication must be unchecked.
If Kerberos is configured (see section Kerberos Configuration), you can log in to the server with Kerberos using Single Sign On (SSO). Note there is no support to use Kerberos with user and password.
When the authentication is delegated to a Virtual DataPort server, Scheduler also retrieves the roles that have been assigned to the user on that server (roles can be created and assigned from the Virtual DataPort Administration Tool). Scheduler allows assigning permissions to a specific role, to delimit the tasks a user with that role can perform over the Scheduler server. The permissions are assigned from the Scheduler administration tool (see section Permissions for more information).
VDP-based authentication and roles retrieval is only possible if connection with the configured Virtual DataPort server is possible. Otherwise, only local-based authentication can take place (using the local user “admin”).