Skip to main content
Announcements
Have questions about Qlik Connect? Join us live on April 10th, at 11 AM ET: SIGN UP NOW
cancel
Showing results for 
Search instead for 
Did you mean: 
Ricardo_Gerhard
Employee
Employee

QVWS separate server

We have a  client that we are configuring your servers. Both QW 11 IR

The server in internal network are working fine. But we want to configure a QVWS in other server.

After the authentication page, the file doesn´t open .QVW´s, only message "No Server".

We want to know how file have the configuration about Qlikview Server, because we configured the server and servername/qlikview is presented and when username and password is verified.

I believe that one file have this string to make this config, but i don´t find.

Anyone have a idea?

Ricardo Gerhard
OEM Solution Architect
LATAM
13 Replies
Not applicable

Hi Brett.

We have QV v.11 and the exact configuration you describe:

a) QVS and DSC on a machine A in the intranet (DSC capable to access the Active Directory)

b) QVWS on a machine B in the DMZ and configured to use the above metioned DSC

When I try to log to the Access Point via the QVWS in the DMZ the system prompts 3-4 times for username and password, I enter my domain account (in the form DOMAIN\USER), but in the end I get a Login Failed page.

To be sure port 4730 has been opened I tried two things:

1) telnet to machineA port 4730 > works fine

2) link machineA:4730/DSC/Service in Internet Explorer > get an XML page, ie works fine

Any idea what could be wrong? Have you a suggestion of a log that can give some more info?

Thank yuo very much

Fabrizio

baldwin79
Contributor
Contributor

Hi,

I'm having exactly the same issue as you. Did you find the solution to this?

Not applicable

Hi.

No, the problem is on hold.

What Brett wrote suggests that the QVWS in the DMZ can use the selected DSC to "request lookups etc." and indirectly have the Actice Directory to verify the user credentials.

That would be the ideal solution:

- the QVWS (in the DMZ) gets the credentials from the user

- the QVWS passes the credentials to the DSC (in the intranet)

- the DSC lookups in the Active Directory

- the DSC sends back a response to the QVWS

Unfortunately it does not seem to work this way.

From the documentation it seems that the DSC is not used for the Authentication.

it is only used for:

- when using NTFS Authorization: to control the file access for all users

- when using DMS Authorization: for lookups to verify group membership

I also got a reply from the Support team:

"The authentication is handled on the QlikView Webserver.

Going forward I would suggest that you look at the attached files regarding how to implement Single Sign-On (SSO) in an Extranet.

When it comes to using Intranet Active Directory as authentication, certificates could be a way forward to enable the trust between the extranet (DMZ) and the intranet. Please see chapter "Certificate Trust" (page 135) in QlikView Server Reference Manual as reference to how the certification could be setup"

Unfortunately I have not had the time to explore these solutions.

I will try to append the files the Support Team sent me.

Regards

Fabrizio

baldwin79
Contributor
Contributor

Hi Fabrizio,

Thanks for the file. Will look into it.