IBM Support

How to Configure the System i Access for Windows OLE DB Providers to Connect Using Kerberos

Troubleshooting


Problem

This document will describe how to configure the System i Access for Windows OLE DB Providers (IBMDA400, IBMDASQL, and IBMDARLA) to connect to the IBM i DB2 UDB using Kerberos.

Resolving The Problem

Note: This document does not cover the setup of Kerberos. It assumes Kerberos has already been set up and is functional for the System i Host Servers and the System i Access for Windows application.

The System i Access for Windows OLE DB Providers (IBMDA400, IBMDASQL, and IBMDARLA) began supporting Kerberos when the iSeries Access for Windows client began its support at V5R3.

How to enable the System i Access OLE DB Providers to use the Kerberos principal with no prompting

1.Configure System i Navigator to use the Kerberos Principal (if you have not already done so).

Note: The server name configured in System i Navigator must exactly match the name specified on the DataSource OLE DB connection property.

a. Open System i Navigator.
b Right click on your system and select Properties.
c Click on the Connection tab.
d In the Signon information section, select the radio button next to Use Kerberos principal name, no prompting.
e Click OK, and restart System i Navigator.
2.Do not specify the User ID or Password connection properties on the connection string. For the System i Access OLE DB provider to use the Kerberos principal, a userID and password must not be passed on the connection.

VB Example: <connection>.Open "Provider=IBMDA400;Data Source=SystemA

[{"Type":"MASTER","Line of Business":{"code":"LOB57","label":"Power"},"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SWG60","label":"IBM i"},"Platform":[{"code":"PF012","label":"IBM i"}],"Version":"6.1.0"}]

Historical Number

534632517

Document Information

Modified date:
11 November 2019

UID

nas8N1012762