Configure User Browsers for Integrated Windows Authentication
Configure User Browsers for Integrated Windows Authentication
As part of the process to enable Integrated Windows Authentication (IWA), users must configure their web browsers to work with the IWA Connector. Provide these instructions to users who will authenticate using IWA.
Configure Firefox for Integrated Windows Authentication
Procedure
- Open Firefox on the computer that will authenticate using IWA.
- In the address bar, type about:config.
- Click I'll be careful, I promise.
- In the Search bar, type negotiate.
- Double-click network.negotiate-auth.delegation-uris.
- Enter the name of your corporate Windows domain (for example, mycorporatedomain.com). If the RSA Application Portal URL and the IWA server URL are not within the Windows domain, enter those URLs also (for example, portal.sso.mycorporatedomain.com, iwa.sso.mycorporatedomain.com).
- Click OK.
- Double-click network.negotiate-auth.trusted-uris.
- Enter the name of your corporate Windows domain (for example, mycorporatedomain.com). If the RSA Application Portal URL and the IWA server URL are not within the Windows domain, enter those URLs also (for example, portal.sso.mycorporatedomain.com, iwa.sso.mycorporatedomain.com).
- Click OK.
Close Firefox.
The new settings take effect the next time you open Firefox.
Configure Chrome and Microsoft Internet Explorer for Integrated Windows Authentication
Provide these instructions to Chrome and Microsoft Internet Explorer users who will authenticate using IWA, or use Windows Group Policy to enforce these settings for users in your corporate domain.
Procedure
- On the computer that will authenticate using IWA, open Control Panel > Internet Options.
- On the Advanced tab, in the Security section, verify that Enable Integrated Windows Authentication is selected.
- Click Apply.
- On the Security tab, select Local Intranet.
- Click Sites.
- Click Advanced.
- In the Add this website to the zone field, enter the name of your corporate Windows domain (for example, mycorporatedomain.com), and click Add. If the RSA Application Portal URL and the IWA server URL are not within the Windows domain, enter those URLs also (for example, portal.sso.mycorporatedomain.com, iwa.sso.mycorporatedomain.com).
Click Close and OK to exit all open dialogs.
The new settings take effect the next time you open Internet Explorer or Chrome.
Related Articles
Deploying an Authentication Agent That Uses the REST Protocol 72Number of Views Change the Timeframe for Using REST Protocol Authentication Agent Credentials 18Number of Views Managing REST Protocol Authentication Agent Credentials 65Number of Views Authentication error for a challenged user with RSA Authentication Manager using REST protocol for RSA Authentication Agen… 139Number of Views Deploying an Authentication Agent that Uses the UDP 34Number of Views
Trending Articles
Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA Authentication Manager 8.9 Release Notes (January 2026) AFX Server Fails to Start with 'Could Not Build a Validated Path' and 'Timed Out Waiting for AFX Applications to Start' in… AFX Server stuck in 'Not running' State, with error 'timed out waiting for AFX applications to start' Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory
Don't see what you're looking for?