Configuring and Registering Token Service
- Last UpdatedMar 19, 2024
- 3 minute read
You can manage AIM token configuration using:
-
Configurator tool
-
AVEVA Work Tasks Central Configuration
For Enterprise Console logout to function,
-
Configure SMS on a Web Server.
To configure SMS, select the option ‘This machine is the System Management Server’ in the Configurator window.
-
Token service should point to the machine where SMS is configured.
To do this, navigate to Central Configuration > Token Service Settings page and for the servername in the Token Service URL field, provide the machine name where SMS is configured.
-
Servers mapped should only point to the Enterprise Console where SMS is configured.
To do this, navigate to Central Configuration > Repository Settings > Servers Mapped > Enterprise Consoles and select the Enterprise Console where SMS is configured.
Token Service Configuration using Configurator Tool
The Configurator window lists the System Management Servers as illustrated below:

-
Click the Configure button to configure certificate manager.
Token Service Configuration and Registration using Central Configuration
-
On the Windows Start menu, point to Programs, point to AVEVA, and then right-click Central Configuration, and select Run as Administrator.
The Central Configuration web page appears.
-
Click Token Service.
The Token Service page appears.
-
Select the Configure check box to specify the server name and attach the certificate.
The confirmation message appears whether you want to configure the token service.
Note:
- You need to select Configure check box to configure the token service. If not selected, the token service will only get registered.
- If you reconfigure the token service, the existing configuration and the certificate will be deleted. Also, the applications which use the same token service will stop working.
-If the token service is reconfigured, the token service registered from Central Configuration should be re-registered. -
Click OK to configure the token service.
-
In the Server Name box, select the server name where AIM is installed.
-
Click the attachment icon against the Certificate box to select the certificate. The selected certificate should be in pfx format.
-
In the Password box, enter the password for the selected certificate.
-
In the Token Service URL box, enter the URL of the server where AIM is installed and configured. The URL format should be https://servername/identitymanager. The servername should be fully qualified host name.
-
In the Alias Name box, enter the alias name for the token service.
-
In the Registrar User box, enter the user name used for registering to AIM.
-
In the Password box, enter the password for the Registrar user.
-
Click Register.
The token service is registered successfully.
-
Click Reset and then repeat steps 3 - 11 to configure and register additional token services for authentication.
Note:
- While registering Token Service, all existing Enterprise Console URIs will be added
to redirect URI. If you are creating a new Enterprise Console, you must re-register
the Token Service.
- To access the Enterprise Console Web Site, ensure that Anonymous authentication
is enabled and Windows authentication is disabled.