<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>article Qlik Enterprise Manager authentication methods: Forms Authentication and Windows Authentication (Single-Sign On) in Official Support Articles</title>
    <link>https://community.qlik.com/t5/Official-Support-Articles/Qlik-Enterprise-Manager-authentication-methods-Forms/ta-p/2015074</link>
    <description>&lt;P&gt;By default, Qlik Enterprise Manager uses Single Sign-on through Windows Authentication to authenticate users.&lt;/P&gt;
&lt;P&gt;Qlik provides several ways to control the login process:&lt;/P&gt;
&lt;OL class="lia-list-style-type-lower-alpha"&gt;
&lt;LI&gt;Single Sign-on authentication&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Single Sign-on authentication with Kerberos&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Form Authentication&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;SAML authentication&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;In this document, we demonstrate the use of the two most commonly used authentication methods:&lt;/P&gt;
&lt;UL class="lia-list-style-type-circle"&gt;
&lt;LI&gt;Single Sign-on authentication&lt;/LI&gt;
&lt;LI&gt;Form Authentication&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Controlling the way the users log in to Qlik Enterprise Manager can be done via the Qlik Enterprise Manager Command Line Interface.&lt;/P&gt;
&lt;P&gt;All commands in this section should be &lt;FONT face="courier new,courier"&gt;Run as administrator...&lt;/FONT&gt; from the Qlik Enterprise Manager &lt;FONT face="courier new,courier"&gt;bin&lt;/FONT&gt; directory. The default location is &lt;FONT face="courier new,courier"&gt;C:\Program Files\Attunity\Enterprise Manager\bin&lt;/FONT&gt;.&lt;/P&gt;
&lt;P&gt;When the Qlik Enterprise Manager data folder is in a non-default location (such as in a cluster installation), make sure to include the&lt;FONT face="courier new,courier"&gt; --d data_folder&lt;/FONT&gt; parameter in all commands, where&lt;FONT face="courier new,courier"&gt; data_folder&lt;/FONT&gt; is the location of the data folder.&lt;/P&gt;
&lt;P&gt;The parameter should immediately follow the name of the Qlik Enterprise Manager executable file (e.g. &lt;FONT face="courier new,courier"&gt;aemctl --d f:\mydatafolder {command} {parameters}&lt;/FONT&gt;)&lt;/P&gt;
&lt;P&gt;Changes to the authentication method will take effect only after you restart the Qlik Enterprise Manager service.&lt;/P&gt;
&lt;P&gt;If &lt;FONT color="#339966"&gt;&lt;STRONG&gt;Form authentication&lt;/STRONG&gt;&lt;/FONT&gt; is used, all Login/Logout operations are reported to the Audit Trail.&lt;/P&gt;
&lt;H3&gt;&amp;nbsp;&lt;/H3&gt;
&lt;H3&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;Windows Authentication&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;By default, Qlik Enterprise Manager uses Single Sign-on through Windows Authentication to authenticate users.&lt;/P&gt;
&lt;P&gt;When a user accesses the Qlik Enterprise Management URL, they are automatically authenticated as their logged-in Windows user. No prompt is provided and the Qlik Enterprise Manager main screen opens:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SSO main screen.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95900i7172BF2D0445F4DB/image-size/large?v=v2&amp;amp;px=999" role="button" title="SSO main screen.png" alt="SSO main screen.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;Form Authentication&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;You may prefer to have users interactively log in to Qlik Enterprise Manager. This can be configured in the command line interface.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;All commands in this section should be &lt;FONT face="courier new,courier"&gt;Run as administrator...&lt;/FONT&gt; from the Qlik Enterprise Manager &lt;FONT face="courier new,courier"&gt;bin&lt;/FONT&gt; directory. The default location is &lt;FONT face="courier new,courier"&gt;C:\Program Files\Attunity\Enterprise Manager\bin&lt;/FONT&gt;.&lt;/P&gt;
&lt;P&gt;When the Qlik Enterprise Manager data folder is in a non-default location (such as in a cluster installation), make sure to include the&lt;FONT face="courier new,courier"&gt; --d data_folder&lt;/FONT&gt; parameter in all commands, where&lt;FONT face="courier new,courier"&gt; data_folder&lt;/FONT&gt; is the location of the data folder.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;To enable form authentication:&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H4&gt;
&lt;OL&gt;
&lt;LI&gt;Open a command line as an administrator in the correct directory and run:&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method form&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG style="color: #339966; font-family: inherit;"&gt;Example:&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD as admin set form.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95901i80A5D5228C95B18D/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD as admin set form.png" alt="CMD as admin set form.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Verify the response:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD set form reply.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95902i63E62BEAFC0AB2A0/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD set form reply.png" alt="CMD set form reply.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;After the restart, users will be presented with the following screen:&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM screen after set form.png" style="width: 675px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95903iC7098992C23B4233/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM screen after set form.png" alt="QEM screen after set form.png" /&gt;&lt;/span&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt; &lt;BR /&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Configure user session inactivity timeout&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;If you like to close the user’s session after a set time of inactivity, you can set a user timeout in the command line.&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;As per above, navigate to the correct directory and execute:&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method form --user_timeout 2&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;Verify the response:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM SET timeout.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95904iEA8B507580D65114/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM SET timeout.png" alt="QEM SET timeout.png" /&gt;&lt;/span&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;The user will be notified about the session expiration:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM screen with session notification.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95905iCCE917523B8C75C3/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM screen with session notification.png" alt="QEM screen with session notification.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Specify the Active Directory domain&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;You can specify an Active Directory domain name that will be used when a user logs in. This means the user does not have to supply the domain name and can log in using only their username.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;SPAN&gt;As per above, navigate to the correct directory and execute:&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method form --domain DomainName&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;Verify the response:&lt;SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD set domain.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95906i65264B0CC199AE63/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD set domain.png" alt="CMD set domain.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;The user can log in with his user mane and password only:&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM screen after set domain.png" style="width: 643px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95907iFA2F318BF575A0F0/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM screen after set domain.png" alt="QEM screen after set domain.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;Reverting back to using the default Windows Authentication&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;You can revert to using Single-Sign at any time using the command line.&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;SPAN&gt;As per above, navigate to the correct directory and execute:&lt;/SPAN&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method sso&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;Verify the response:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD set SSO.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95908i607672CE06CA935A/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD set SSO.png" alt="CMD set SSO.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;Users are now once again automatically logged in with their Windows users:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SSO main screen.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95909i253747BA2599C896/image-size/large?v=v2&amp;amp;px=999" role="button" title="SSO main screen.png" alt="SSO main screen.png" /&gt;&lt;/span&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Environment&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;LI-PRODUCT title="Qlik Enterprise Manager" id="qlikEnterpriseManager"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp; (all versions)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 16 Dec 2022 08:39:38 GMT</pubDate>
    <dc:creator>avidary_qlik</dc:creator>
    <dc:date>2022-12-16T08:39:38Z</dc:date>
    <item>
      <title>Qlik Enterprise Manager authentication methods: Forms Authentication and Windows Authentication (Single-Sign On)</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/Qlik-Enterprise-Manager-authentication-methods-Forms/ta-p/2015074</link>
      <description>&lt;P&gt;By default, Qlik Enterprise Manager uses Single Sign-on through Windows Authentication to authenticate users.&lt;/P&gt;
&lt;P&gt;Qlik provides several ways to control the login process:&lt;/P&gt;
&lt;OL class="lia-list-style-type-lower-alpha"&gt;
&lt;LI&gt;Single Sign-on authentication&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Single Sign-on authentication with Kerberos&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Form Authentication&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;SAML authentication&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;In this document, we demonstrate the use of the two most commonly used authentication methods:&lt;/P&gt;
&lt;UL class="lia-list-style-type-circle"&gt;
&lt;LI&gt;Single Sign-on authentication&lt;/LI&gt;
&lt;LI&gt;Form Authentication&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Controlling the way the users log in to Qlik Enterprise Manager can be done via the Qlik Enterprise Manager Command Line Interface.&lt;/P&gt;
&lt;P&gt;All commands in this section should be &lt;FONT face="courier new,courier"&gt;Run as administrator...&lt;/FONT&gt; from the Qlik Enterprise Manager &lt;FONT face="courier new,courier"&gt;bin&lt;/FONT&gt; directory. The default location is &lt;FONT face="courier new,courier"&gt;C:\Program Files\Attunity\Enterprise Manager\bin&lt;/FONT&gt;.&lt;/P&gt;
&lt;P&gt;When the Qlik Enterprise Manager data folder is in a non-default location (such as in a cluster installation), make sure to include the&lt;FONT face="courier new,courier"&gt; --d data_folder&lt;/FONT&gt; parameter in all commands, where&lt;FONT face="courier new,courier"&gt; data_folder&lt;/FONT&gt; is the location of the data folder.&lt;/P&gt;
&lt;P&gt;The parameter should immediately follow the name of the Qlik Enterprise Manager executable file (e.g. &lt;FONT face="courier new,courier"&gt;aemctl --d f:\mydatafolder {command} {parameters}&lt;/FONT&gt;)&lt;/P&gt;
&lt;P&gt;Changes to the authentication method will take effect only after you restart the Qlik Enterprise Manager service.&lt;/P&gt;
&lt;P&gt;If &lt;FONT color="#339966"&gt;&lt;STRONG&gt;Form authentication&lt;/STRONG&gt;&lt;/FONT&gt; is used, all Login/Logout operations are reported to the Audit Trail.&lt;/P&gt;
&lt;H3&gt;&amp;nbsp;&lt;/H3&gt;
&lt;H3&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;Windows Authentication&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;By default, Qlik Enterprise Manager uses Single Sign-on through Windows Authentication to authenticate users.&lt;/P&gt;
&lt;P&gt;When a user accesses the Qlik Enterprise Management URL, they are automatically authenticated as their logged-in Windows user. No prompt is provided and the Qlik Enterprise Manager main screen opens:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SSO main screen.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95900i7172BF2D0445F4DB/image-size/large?v=v2&amp;amp;px=999" role="button" title="SSO main screen.png" alt="SSO main screen.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;Form Authentication&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;You may prefer to have users interactively log in to Qlik Enterprise Manager. This can be configured in the command line interface.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;All commands in this section should be &lt;FONT face="courier new,courier"&gt;Run as administrator...&lt;/FONT&gt; from the Qlik Enterprise Manager &lt;FONT face="courier new,courier"&gt;bin&lt;/FONT&gt; directory. The default location is &lt;FONT face="courier new,courier"&gt;C:\Program Files\Attunity\Enterprise Manager\bin&lt;/FONT&gt;.&lt;/P&gt;
&lt;P&gt;When the Qlik Enterprise Manager data folder is in a non-default location (such as in a cluster installation), make sure to include the&lt;FONT face="courier new,courier"&gt; --d data_folder&lt;/FONT&gt; parameter in all commands, where&lt;FONT face="courier new,courier"&gt; data_folder&lt;/FONT&gt; is the location of the data folder.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;To enable form authentication:&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H4&gt;
&lt;OL&gt;
&lt;LI&gt;Open a command line as an administrator in the correct directory and run:&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method form&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG style="color: #339966; font-family: inherit;"&gt;Example:&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD as admin set form.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95901i80A5D5228C95B18D/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD as admin set form.png" alt="CMD as admin set form.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Verify the response:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD set form reply.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95902i63E62BEAFC0AB2A0/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD set form reply.png" alt="CMD set form reply.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;After the restart, users will be presented with the following screen:&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM screen after set form.png" style="width: 675px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95903iC7098992C23B4233/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM screen after set form.png" alt="QEM screen after set form.png" /&gt;&lt;/span&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt; &lt;BR /&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Configure user session inactivity timeout&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;If you like to close the user’s session after a set time of inactivity, you can set a user timeout in the command line.&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;As per above, navigate to the correct directory and execute:&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method form --user_timeout 2&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;Verify the response:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM SET timeout.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95904iEA8B507580D65114/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM SET timeout.png" alt="QEM SET timeout.png" /&gt;&lt;/span&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;The user will be notified about the session expiration:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM screen with session notification.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95905iCCE917523B8C75C3/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM screen with session notification.png" alt="QEM screen with session notification.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Specify the Active Directory domain&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;You can specify an Active Directory domain name that will be used when a user logs in. This means the user does not have to supply the domain name and can log in using only their username.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;SPAN&gt;As per above, navigate to the correct directory and execute:&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method form --domain DomainName&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;Verify the response:&lt;SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD set domain.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95906i65264B0CC199AE63/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD set domain.png" alt="CMD set domain.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;The user can log in with his user mane and password only:&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QEM screen after set domain.png" style="width: 643px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95907iFA2F318BF575A0F0/image-size/large?v=v2&amp;amp;px=999" role="button" title="QEM screen after set domain.png" alt="QEM screen after set domain.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;STRONG&gt;&lt;FONT color="#339966"&gt;Reverting back to using the default Windows Authentication&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;You can revert to using Single-Sign at any time using the command line.&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;SPAN&gt;As per above, navigate to the correct directory and execute:&lt;/SPAN&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;aemctl.exe configuration set --authentication_method sso&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;Verify the response:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CMD set SSO.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95908i607672CE06CA935A/image-size/large?v=v2&amp;amp;px=999" role="button" title="CMD set SSO.png" alt="CMD set SSO.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Restart the Qlik Enterprise Manager service.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;Users are now once again automatically logged in with their Windows users:&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SSO main screen.png" style="width: 720px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/95909i253747BA2599C896/image-size/large?v=v2&amp;amp;px=999" role="button" title="SSO main screen.png" alt="SSO main screen.png" /&gt;&lt;/span&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Environment&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;LI-PRODUCT title="Qlik Enterprise Manager" id="qlikEnterpriseManager"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp; (all versions)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 08:39:38 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/Qlik-Enterprise-Manager-authentication-methods-Forms/ta-p/2015074</guid>
      <dc:creator>avidary_qlik</dc:creator>
      <dc:date>2022-12-16T08:39:38Z</dc:date>
    </item>
  </channel>
</rss>

