For users who are connected to a database using windows authentication, when their report is published to the server, only those with access to the data source will be able to open the report. This way, the security is only implemented on the data source, and you will be able to use LDAP authentication to access the Spotfire web player. It will provide integrated security to the data so sensitive data is always protected, and available only to the proper users.
Here's a better link that covers all available single-sign-on methods: https://docs.tibco.com/pub/spotfire_server/latest/doc/html/TIB_sfire_server_tsas_admin_help/server/topics/single_sign-on_authentication_methods.html.
Hi Mathew,
Maybe it's something I'm missing, but as I understand the request, this already works if the windows environment is set up so that the windows identity can be sent all the way to the database. For example. that's how it works with Kerberos.
Regards,
Magnus