Digipass Authentication For IIS Basic 3.2

Save this PDF as:
 WORD  PNG  TXT  JPG

Size: px
Start display at page:

Download "Digipass Authentication For IIS Basic 3.2"

Transcription

1 Digipass Authentication For IIS Basic 3.2

2 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or conditions, express or implied, including but not limited to warranties of merchantable quality, merchantability of fitness for a particular purpose, or those arising by law, statute, usage of trade or course of dealing. The entire risk as to the results and performance of the product is assumed by you. Neither we nor our dealers or suppliers shall have any liability to you or any other person or entity for any indirect, incidental, special or consequential damages whatsoever, including but not limited to loss of revenue or profit, lost or damaged data of other commercial or economic loss, even if we have been advised of the possibility of such damages or they are foreseeable; or for claims by a third party. Our maximum aggregate liability to you, and that of our dealers and suppliers shall not exceed the amount paid by you for the Product. The limitations in this section shall apply whether or not the alleged breach or default is a breach of a fundamental condition or term, or a fundamental breach. Some states/countries do not allow the exclusion or limitation or liability for consequential or incidental damages so the above limitation may not apply to you. Copyright 2008 VASCO Data Security Inc. All rights reserved. No part of this publication may be reproduced, stored in a retrieval system, or transmitted, in any form or by any means, electronic, mechanical, photocopying, recording, or otherwise, without the prior written permission of VASCO Data Security Inc. Trademarks VACMAN, Identikey, axs GUARD and Digipass are registered trademarks of VASCO Data Security International Inc. Microsoft and Windows are registered trademarks of Microsoft Corporation. All other trademarks are the property of their respective holders. Digipass Authentication for IIS Basic Guide 2

3 Table of Contents Table of Contents 1 Digipass Authentication for IIS Overview IIS 6 Module - Basic Authentication IIS Module Terminology Authentication Methods Server Connection Management Connection Profiles Connection Options Standard Server setup Tracing Basic Authentication Credentials User ID and Password Replacement Scenarios Authorization using Domain Windows User Accounts Authorization using Local Windows User Accounts, Login using Domain Windows User Accounts Authorization from Local Windows User Accounts, Login using Digipass User Accounts Configuration Settings Digipass User Attribute Settings Installation System Requirements Software Pre-Installation Tasks Install Authentication Server IIS Information Needed Licensing Install Digipass Authentication for IIS Basic Digipass Authentication for IIS Basic Wizard Configuration IIS 6 Module Configuration Enable/Disable the IIS 6 Module Authentication Server Details Add a Server Modify Server Details Delete a Server Record Modify Connection Settings Turn Tracing On or Off Component Type Session Timeout...37 Digipass Authentication for IIS Basic Guide 3

4 Table of Contents Basic Authentication Credential Overrides Failed Login Page Realm Authentication Headers Configuration File Configuration Settings Modify Character Set Used Configuring IIS to work with the IIS 6 Module Secure Areas Public Areas Configure Authentication Server Component Record Configure for Windows User Accounts Windows User Name Resolution Case Sensitivity Default Domain Policy Windows Domain Login with Password Replacement Windows Domain Login without Password Replacement Local Authentication Only Post-Installation Tasks Login Failure Page Troubleshooting IIS 6 Module Installation Problems Check file placement Check Permissions Trace File Directory Configuration file Add the IIS_WPG Group Set System Environment Variable Install the ISAPI Filter Other Troubleshooting Options No Trace File Information from Trace File Authentication Server Licensing Repair Installation Uninstalling the Digipass Authentication for IIS Uninstall the Digipass Authentication for IIS...68 Digipass Authentication for IIS Basic Guide 4

5 Table of Contents 7 Technical Support Support Contact Information...69 Digipass Authentication for IIS Basic Guide 5

6 Digipass Authentication for IIS Overview 1 Digipass Authentication for IIS Overview 1.1 IIS 6 Module - Basic Authentication The IIS 6 Module is an add-on for VACMAN Middleware, Identikey Server and axs GUARD Identifier. It can be configured to intercept authentication requests to a website which uses the HTTP Basic Authentication mechanism and redirect them to an Authentication Server. The Authentication Server must be one of the following servers: Identikey Server 3.x Identikey Server component VACMAN Middleware 3.0 Authentication Server component axs GUARD Identifier 3.x The IIS 6 Module is an ISAPI filter specifically designed for use with IIS 6 only. Figure 1 Digipass Authentication for IIS Overview IIS Module Terminology The following definitions describe how these terms are used in this document. They are also used in other IIS Package manuals. Basic Authentication A method of authentication that uses the HTTP Basic Authentication mechanism. This uses a login pop-up box provided by the Browser. Digipass Authentication for IIS Basic Guide 6

7 Digipass Authentication for IIS Overview Forms Authentication The method of authentication where the Web Site provides its own login page. IIS Module/IIS 6 Module General term for a plug-in to IIS to allow Digipass authentication to take place. The IIS 6 module is the IIS Module for IIS version 6. The IIS 6 module takes two forms depending on its application: IIS Extension The IIS Extension is an ISAPI extension used for Forms Authentication. The IIS plug-in is referred to as the IIS Module in manuals for Forms Authentication, unless the text is referring specifically to the IIS Extension. IIS Filter The IIS Filter is an ISAPI filter used for Basic Authentication. The IIS plug-in is referred to as the IIS Module in manuals for Basic Authentication, unless the text is referring specifically to the IIS Filter. Authentication Server The term Authentication Server refers to the component to which the IIS Module sends authentication requests. This component is: For Identikey Server, the Identikey Server service or daemon For axs Guard Identifier, the Identikey Server daemon For VACMAN Middleware 3, the Digipass Authentication Service Client/Component/Client Component The above terms refer to the same thing. The Client Component is the record defined in the Authentication Server's data store, to represent an installed instance of the IIS Module. Different terms are used due to differences in terminology on the server side. i.e. Client for Identikey Server and axs Guard, Component for VACMAN Middleware 3. They are used for the following main purposes: To indicate that the Authentication Server is permitted to process a request from that client To specify a Policy to be used to process the request To hold a License Key for the IIS Module Authentication Methods See the Product Guide for your authentication server product for detailed information on login methods and options. Digipass Authentication for IIS Basic Guide 7

8 Digipass Authentication for IIS Overview Response Only login Users log in via the current login page with their username and One Time Password (OTP). Virtual Digipass login Users logging in with a Virtual Digipass need to use a 2-step process. They attempt a login with their User ID, password and/or a keyword (as required by VACMAN Middleware). The login fails, and triggers the sending of an One Time Password to the User s mobile via text message. The User re-attempts a login, using their password and OTP. Challenge/Response logins are not supported for basic authentication Server Connection Management The IIS 6 Module provides flexibility in managing connections to multiple primary and/or backup Authentication Servers. This allows redundancy and load sharing over multiple servers Connection Profiles Two connection profiles are available: Primary The Server(s) to which the IIS 6 Module will first attempt to connect. The Primary Authentication Server(s) take the majority of the data load. Load sharing may be implemented over all Primary Authentication Servers. Backup A Backup Server can provide redundancy and failover. It is typically a local machine which, if the Primary Authentication Server is busy or cannot be contacted, will be used until a connection to the Primary Authentication Server can be re-established Connection Options Terminology Maximum Connections The maximum number of connections that the IIS 6 Module may have open to the Authentication Server at one time. Timeout The time that the IIS 6 Module should wait for a reply from the Authentication Server. Digipass Authentication for IIS Basic Guide 8

9 Digipass Authentication for IIS Overview Reconnect Interval If the IIS 6 Module cannot connect to an Authentication Server, it will make connection attempts at increasing time intervals until it succeeds in establishing a connection. The time period between connection attempts is the Reconnect Interval Standard Server setup Figure 2 Standard Server Connection Configuration This setup uses one main Authentication Server to handle requests from the Web Server, with a backup Authentication Server for use when the main Authentication Server is busy or unavailable Tracing The IIS 6 Module makes use of a trace file to record information about events that occur on the system, for use in troubleshooting. This could include generic information, changing conditions, or problems and errors that have been encountered. The level of tracing that the IIS 6 Module employs depends on its configuration settings. Caution Enabling Full Tracing should only be done for troubleshooting purposes. There are no limits set on the size of the tracing file, so if the option is left on too long on a high-load system the file may dramatically slow down or crash Windows, due to excessive I/O or filling up the hard drive. Digipass Authentication for IIS Basic Guide 9

10 Digipass Authentication for IIS Overview Because there are no size limitations set on the trace file, it is not recommended that you have tracing permanently enabled. If your system is set up with Tracing always enabled, ensure that the file size does not cause problems by deleting or archiving it whenever it gets too large. Basic tracing includes: Critical error/warning messages [CRITC] Major error/warning messages [MAJOR] Minor error/warning messages [MINOR] Configuration messages [CONFG] Full tracing includes: Critical error/warning messages [CRITC] Major error/warning messages [MAJOR] Minor error/warning messages [MINOR] Configuration messages [CONFG] Informational messages [INFOR] Data tracing messages [DATA] Debugging messages (useful for support purposes) [DEBUG] Security messages, messages that may contain security sensitive data [SECUR] Note The IIS 6 Module will require permissions for the directory in which the tracing file is kept. See Check Permissions for more information. Digipass Authentication for IIS Basic Guide 10

11 Digipass Authentication for IIS Overview 1.2 Basic Authentication Credentials There are two types of authentication credential modification which may be performed by the IIS 6 Module. Stored Password Proxy The standard Stored Password Proxy replaces an OTP entered by the User with the Stored Static Password from the Digipass User account for back-end system authentication checks by the Authentication Server. However, if the User enters a static password in front of their OTP, the static password they enter will take precedence over Stored Static Password. In that case, the Stored Static Password will not be used at all for that login. User Attribute Replacement A different User ID and/or password may be set for individual Digipass User accounts. Typically, this would be used where a small number of local Windows accounts are used for authorization by a web site. The IIS 6 Module will replace the User ID and/or password entered during login with User attributes User ID and Password Replacement Scenarios Authorization using Domain Windows User Accounts In this scenario, Domain Windows User accounts are used for authentication and authorization with Active Directory. Typically, the Authentication Server's password replacement would be used to allow a User to log in using an OTP only, with their Windows password stored in the Authentication Server and passed back to the IIS 6 Module. Alternatively, a User may be required to enter their password and OTP at every login. This approach requires the web server to be linked to Active Directory. The Authentication Server checks the One Time Password. If correct, the Authentication Server sends the Windows password back to the IIS 6 Module. Digipass Authentication for IIS Basic Guide 11

12 Digipass Authentication for IIS Overview The IIS 6 Module replaces the OTP entered by the User in the User's basic authentication credentials with the Windows password. The web site authorizes access according to permissions set for Domain user accounts. 'Authentication Server Password Replacement' Configuration Settings The 'Authentication Server password replacement' option requires the following settings in the Authentication Server: It is recommended that Windows User Name Resolution enabled (ODBC databases only, including the embedded PostgreSQL database) on Windows platforms Password Autolearn and Stored Password Proxy enabled Windows Back-End Authentication enabled 'No Authentication Server Password Replacement' Configuration Settings The 'No Authentication Server password replacement' option requires the following settings in the Authentication Server: It is recommended that Windows User Name Resolution is enabled (ODBC databases only, including the embedded PostgreSQL database) on Windows platforms Password Autolearn and Stored Password Proxy disabled Windows Back-End Authentication disabled for Windows platforms, or Microsoft Active Directory back-end Authentication for axs GUARD It will also require each User enter their password in front of their OTP during login Authorization using Local Windows User Accounts, Login using Domain Windows User Accounts In this scenario, Domain Windows User accounts are used for authentication and local Windows User accounts are used for authorization. The Domain must be an Active Directory domain. Typically, Windows Back-End Authentication would be used with Dynamic User Registration enabled. Password Autolearn and Stored Password Proxy are not required. This approach removes the need for the web server to be linked to Active Directory, while retaining authentication of Active Directory accounts. It allows authorization permissions to be set according to 'user profiles' if individual authorization is not required. Digipass Authentication for IIS Basic Guide 12

13 Digipass Authentication for IIS Overview The Authentication Server checks the OTP. If correct, the Authentication Server looks up the User-Name and Password attributes for the Digipass User account and returns them to the Authentication Server. User attributes for a Digipass User may be viewed or edited via the Authorization Profiles/Attributes button on the Digipass User property sheet for VACMAN Middleware, or on the User tab of the Webadmin application for Identikey Server or axs GUARD. The web site authorizes access according to permissions set for local accounts, using the User-Name and Password attributes passed back from the Authentication Server. You might create only a few local accounts - one per authorization profile required - or a local account for each User. This requires the following settings in the Authentication Server: It is recommended that Windows User Name Resolution is enabled (ODBC databases only, including the embedded PostgreSQL database) on Windows platoforms. User attributes set for each Digipass User account. See 1.2 Basic Authentication Credentials for more information Authorization from Local Windows User Accounts, Login using Digipass User Accounts In this scenario, Digipass User accounts are used for authentication (with VM only) and local Windows User accounts are used for authorization. This approach is similar to the last, but has no link to Active Directory - even for authentication. Digipass Authentication for IIS Basic Guide 13

14 Digipass Authentication for IIS Overview The Authentication Server checks the OTP. If correct, the Authentication Server looks up the User-Name and Password attributes for the Digipass User account and returns them to the IIS 6 Module. User attributes for a Digipass User may be viewed or edited via the Authorization Profiles/Attributes button on the Digipass User property sheet for VACMAN Middleware, or on the User tab of the Webadmin application for Identikey Server or axs GUARD. The web site authorizes access according to permissions set for local accounts, using the User-Name and Password attributes passed back from the Authentication Server. You might create only a few local accounts - one per authorization profile required - or a local account for each User. This requires the following settings in the Authentication Server: User attributes set for each Digipass User account. Note If the Digipass User account's User ID will be the same as the local Windows account User ID, there is no need to set the User-Name attribute. Digipass Authentication for IIS Basic Guide 14

15 Digipass Authentication for IIS Overview Configuration Settings Image 1: User Attribute Configuration Settings Three User attribute settings are available in the IIS 6 Module Configuration. Replace User Name with User Attribute This enables or disables the replacement of the User ID entered during login with a User attribute named User- Name. There are three possible results: Setting enabled and User attribute set - the User ID set in the attributes for the relevant Digipass User account will be passed to the web site. Setting enabled and User attribute not set - the User ID entered during login will be passed to the web site. Setting disabled - the User ID entered during login will be passed to the web site. Replace Password with User Attribute This enables or disables the replacement of the password entered during login with a User attribute named Password. There are three possible results: Setting enabled and User attribute set - the password set in the attributes for the relevant Digipass User account will be passed to the web site. Setting enabled and User attribute not set - the password entered during login will be passed to the web site. Setting disabled - the password entered during login will be passed to the web site Note The stored password will override the password entered during login if stored password proxy is ON and the User has a stored password. Attribute Group Each User attribute is set using an Attribute Group name. This allows multiple IIS 6 Modules to use different values for the same User attributes without confusion. Digipass Authentication for IIS Basic Guide 15

16 Digipass Authentication for IIS Overview Digipass User Attribute Settings Any User attributes to be used by the IIS 6 Module will need these settings: Attribute Group The value in this field must be identical to the value set in the IIS 6 Module Configuration. Name The Name for a User attribute should be either User-Name or Password. Usage The Usage should be set to Basic. Value The Value set for an attribute will be the alternate User ID or password. Image 2: User Attribute Settings in Digipass User Properties for VACMAN Middleware Digipass Authentication for IIS Basic Guide 16

17 Digipass Authentication for IIS Overview Image 3: User Attribute Settings in Digipass User Properties for Identikey Server and axs GUARD Digipass Authentication for IIS Basic Guide 17

18 Installation 2 Installation Before installing the IIS 6 Module, check that all system requirements and pre-installation tasks have been met. This will help ensure a smooth, trouble-free installation and integration process. 2.1 System Requirements Software An authentication server running on another machine. This should be one of the following: Identikey Server 3.x Identikey Server component VACMAN Middleware Authentication Server component axs GUARD Identifier 3.x Internet Information Services (IIS) 6.0 or higher Windows Server 2003 SP2 or higher (32- or 64-bit) The User must have administration rights on the installation machine. Note If the web site is not in Basic Authentication mode, this IIS Module will not function. 2.2 Pre-Installation Tasks Before installing the IIS 6 Module, there are several tasks which need to be completed. Performing these tasks (where applicable) will assist in a quick, smooth installation process. Note Digipass Authentication for IIS Basic cannot be installed on the same machine as any other Digipass Authentication packages Install Authentication Server An Authentication Server must be installed on the network before the IIS 6 Module is installed. See 2.1 System Requirements for compatible servers and 3.4 Configure Authentication Server for configuration recommendations. Digipass Authentication for IIS Basic Guide 18

19 Installation Warning If the users are Active Directory users on a Windows platform, it is recommended that the Use Windows User Name Resolution feature on the Authentication Server is enabled. This uses Windows functions to identify User IDs as Windows User accounts, including the domain to which the account belongs. This feature is not available on Linux platforms or the axs GUARD Identifier. If the Use Windows User Name Resolution feature is disabled, it is essential that users always use the same login name. If they try to log in using a different form of their Windows account name, their login will be rejected, unless a second Digipass User account has been created IIS Ensure IIS and the OWA are installed and working correctly. The OWA must be installed on the IIS server where the web server is running Information Needed Before you begin installation of the IIS 6 Module, ensure that you have the following information easily accessible, as you will need to enter this during the installation. IP address and port number of the Authentication Server. To check this, open the Authentication Server Configuration and check the Component location and Port fields. Source IP address on the local machine to use when connecting to the Authentication Server (if multiple IP addresses are configured for this machine, as this affects licensing see below) Licensing The Authentication Server will regard each incoming IP address as a different Client Component. This is the reason for selecting a single IP address in connecting to the Authentication Server if there is more than one IP address for a machine. Digipass Authentication for IIS Basic Guide 19

20 Installation 2.3 Install Digipass Authentication for IIS Basic 1. Start the Digipass Authentication for IIS Basic installation process. If you are not using the CD Autorun interface, locate and double-click on the Digipass_Auth_for_IIS_basic_320.msi file. 2. Click Next. Digipass Authentication for IIS Basic Guide 20

21 Installation 3. Tick the box marked 'I accept the terms in the License Agreement'. 4. Click Next. Digipass Authentication for IIS Basic Guide 21

22 Installation 5. Enter the destination folder for the module. 6. Click Next Digipass Authentication for IIS Basic Guide 22

23 Installation 7. Click Install to install the Digipass Authentication for IIS Basic. The files will be installed to the directory you specified. Digipass Authentication for IIS Basic Guide 23

24 Installation 8. To finish the install click Finish. The Digipass Authentication for IIS Basic Wizard will be started. Digipass Authentication for IIS Basic Guide 24

25 Installation 2.4 Digipass Authentication for IIS Basic Wizard Note For a definition of the term Authentication Server, please see IIS Module Terminology 1. Enter the IP address for the Authentication Server in the IP Address field. 2. Check the Port field. If the SEAL port on which the primary Authentication Server is listening is not the default provided (20003), enter the correct port number. 3. Select the type of data store that the primary Authentication Server is using. Select either Active Directory or ODBC-compliant or embedded database. If using the embedded PostgreSQL database, select ODBCcompliant or embedded database. 4. Click Next. The Wizard will attempt to connect to the Authentication Server using the IP address and port provided. If the connection fails an error window will appear informing you of the problem. Click OK to take you back to the Authentication Server Connection Details window. To get help identifying the problem, see the 5 Troubleshooting section. Digipass Authentication for IIS Basic Guide 25

26 Installation 5. Select an IP address from the IP Address drop down list, which will contain IP addresses assigned to the current machine. The IIS 6 Module will use the selected IP address exclusively. As VASCO component licensing operates on IP address, this ensures that the IIS 6 Module will only use up one component license slot. 6. Click Next. 7. Select one of the two option buttons. Create Component record manually The Wizard will not attempt to create a Component record for the IIS 6 Module or load a license for the record. You will need to do this manually instead. This option where a Component record already exists for the IIS 6 Module, with a valid license key loaded. a. Select Do not create the Component record and do not load the license automatically b. Click on Next. c. Jump to Step 10. Create Component record automatically The Wizard will create a Component record in the Authentication Server data store for the IIS 6 Module. You may also load a license for the created record. If the Component record already exists for the IIS 6 Module at the current IP address, a new Component record will not be created. The license key will be loaded into the existing Component record. a. Select Do create the Component record automatically Digipass Authentication for IIS Basic Guide 26

27 Installation b. Click on Next. c. Continue with the following steps. 8. Enter your login details: Active Directory a. Enter the User ID and password for the Domain Administrator. If you are logged into the current machine as Domain Administrator in the correct Domain, you may leave these fields blank. b. Enter the Fully Qualified Domain Name of the Domain in which the Authentication Server configuration data is kept. Typically this will be Digipass Configuration Domain. This is a mandatory field. c. Enter a preferred server if you wish the Wizard to connect to a specific Domain Controller. The text entered should be the first part of the Fully Qualified Domain Name for the Domain Controller. d. Click on Next. Digipass Authentication for IIS Basic Guide 27

28 Installation ODBC-Compliant Database a. Enter the User ID and password for an Administrator account on the Authentication Server. This account will need permissions to: view, create and update Components b. Click on Next. view Policies Digipass Authentication for IIS Basic Guide 28

29 Installation 9. To load a license key: Select a license key file by clicking... Select the license.dat file to load from where you saved it on your machine. Click Open to load the License Key from the file. If you do not already have a license.dat file containing a License Key for the OWA Component at this Location, click on the Request a License Key from button. This will take you to the vasco.com web site, where you can request a license key and save it to a file called license.dat. Digipass Authentication for IIS Basic Guide 29

30 Installation To load a license key later, simply click on Next. 10. The Summary screen will allow you to review your configuration settings before they are applied. Check the configuration settings carefully and click Back to go back and change a setting if it is incorrect. Click Proceed to apply the configuration settings when they are correct. 11. If the Authentication Server uses Active Directory as its data store, you may need to restart the Authentication Server before it will recognise the new Component record and acknowledge requests from the IIS 6 Module. Digipass Authentication for IIS Basic Guide 30

31 Configuration 3 Configuration Configuration settings can be modified in two ways. The easiest method is via the IIS 6 Module Configuration a graphical interface that allows you to make changes with a few mouse clicks. Advanced users may prefer to edit the configuration file directly. 3.1 IIS 6 Module Configuration A Graphical User Interface (GUI) is available for use in configuring the IIS 6 Module. This provides a simple, intuitive way to set up the IIS 6 Module to work with your current system. To open the IIS 6 Module Configuration, click on the Start Button and select Programs VASCO Digipass Authentication for IIS Basic IIS Module Configuration Alternatively, open Windows Explorer and open <IIS 6 Module install directory>\bin\dpiismodcfg.exe. If this is the first time you have opened the IIS 6 Module Configuration and the configuration file has not been edited, the values you will see are those entered when the Configuration Wizard was last run. Digipass Authentication for IIS Basic Guide 31

32 Configuration Enable/Disable the IIS 6 Module This option starts or stops the IIS 6 Module from redirecting authentication requests to the Authentication Server. 1. Click on the General tab. 2. Tick or untick the Enable Digipass Authentication checkbox. 3. Click on the Apply button Authentication Server Details The Server list contains all Authentication Servers which may be utilized by the IIS 6 Module. Authentication Server records can be added, deleted, or their details modified Add a Server 1. Click on the Add button. The New Server window will be displayed. Digipass Authentication for IIS Basic Guide 32

33 Configuration 2. Enter a name for the Authentication Server in the Display Name field. This name will be used to distinguish the Authentication Server in the Server list, but has no effect on the behaviour of the IIS 6 Module. 3. Enter an IP address and port (typically 20003) for the Authentication Server, in the IP Address and Port fields. 4. Select a Server Type (see Server Connection Management). 5. Enter a timeout period (in seconds) in the Timeout field. 6. Enter the maximum number of concurrent connections to be made from the IIS 6 Module to the Server, in the Max. Connections field. 7. Enter a minimum and maximum amount of time that the IIS 6 Module should wait before attempting to reconnect to the Authentication Server in the Min. Reconnect Interval and Max. Reconnect Interval fields. 8. Click on the OK button Modify Server Details 1. Select the Server to be edited. 2. Click on the Edit button. The Edit Server window will be displayed. Digipass Authentication for IIS Basic Guide 33

34 Configuration 3. Make required changes. 4. Click on the OK button Delete a Server Record 1. Select the Server record to be deleted. 2. Click on the Delete button. A confirmation window will be displayed. 3. Click on OK to delete the Server record. Digipass Authentication for IIS Basic Guide 34

35 Configuration Modify Connection Settings Connect from IP Address If a server has multiple IP addresses configured, the IIS 6 Module needs to know which to use in connecting to the Authentication Server(s). 1. Enter the IP address from which to connect to Authentication Servers in the Connect from IP Address field. This may be left blank if there is only one IP address for the machine. 2. Click on the Apply button. Load Sharing Load sharing allows the IIS 6 Module to connect to multiple Authentication Servers when it has reached the maximum number of concurrent connections for the first primary Authentication Server in the Server list. 1. Tick the Enable Load Sharing checkbox. 2. Click on the Apply button. Digipass Authentication for IIS Basic Guide 35

36 Configuration Turn Tracing On or Off 1. Select a Tracing option. See Tracing for more information. 2. If you have selected Basic Tracing or Full Tracing, enter a path and filename for the tracing file into the File Name field. The file path entered must be the full absolute path. 3. Click on the Apply button. Note If the File Name field is left blank or the file path does not exist, the IIS 6 Module will not output tracing. If the file does exist, tracing will be appended to the file. If the path is valid but the file does not exist, it will be created. If the IIS_WPG group does not have Write permissions for the directory specified, tracing will not be successful. See Trace File Directory for more information. Digipass Authentication for IIS Basic Guide 36

37 Configuration Component Type The Component Type is used when connecting to an Authentication Server, to assist in finding the correct Component record. Caution Modifying this setting may cause the IIS 6 Module to cease working. The Component Type set here must match the Component Type set in the Component record for this IIS 6 Module, or the Authentication Server will reject authentication requests from it Session Timeout After the timeframe entered, the IIS 6 Module will cause an idle session to time out. Digipass Authentication for IIS Basic Guide 37

38 Configuration If a static password was used in the login (rather than an OTP), the session may not appear to timeout, as both browser and IIS can cache and automatically replay a password to reconnect. However if an OTP was used in the login, the session will timeout as expected, as the OTP cannot be reused. 1. Click on the Authentication tab. 2. Enter a value in the Timeout field. 3. Click on the Apply button Basic Authentication Credential Overrides The IIS 6 Module may be configured to substitute a User Attribute for the User ID or password entered during login. These Attributes are taken from the Digipass User account. 1. Tick the Replace User Name with User Attribute checkbox to replace each User ID with a User Attribute. If unticked, each User ID will be left unmodified. 2. Tick the Replace Password with User Attribute checkbox to replace each User's password with a User Attribute. 3. Enter the Attribute Group name to use Failed Login Page This option allows you to specify a HTML page which will be presented to a User if their login is rejected by the IIS 6 Module. Note The browser used for the login attempt may either display the page immediately or pop up the login dialog. If the login dialog is popped up, clicking on the Cancel button will cause the failed login page to be displayed Realm 1. Click on the Authentication tab. 2. Enter the file location and name in the HTML File field or browse to the correct file. 3. Click on the Apply button. If the Realm property is set in IIS, its value will appear in a standard Basic Authentication logon dialog box when IIS requests User login details. When the IIS 6 Module needs to request User login details, it needs the Realm value in order to conform to IIS. As the IIS configuration cannot be read by the IIS 6 Module, the Realm value must also be configured here. Digipass Authentication for IIS Basic Guide 38

39 Configuration 1. Click on the Authentication tab. 2. Enter the Realm name. 3. Click on the Apply button Authentication Headers This is an advanced option which should only be enabled on advice from Technical Support, as it may slow down authentication processing. 1. Click on the Authentication tab. 2. Tick or untick the Modify Basic Authentication Headers checkbox. 3. Click on the Apply button. 4. IIS will need to be restarted before this change takes effect. Digipass Authentication for IIS Basic Guide 39

40 Configuration 3.2 Configuration File The IIS 6 Module Configuration writes to an.xml file named dpmodulecfg.xml in the installation directory. It is possible to edit this file directly instead of using the IIS 6 Module Configuration. Increment the Revision number by 1 to have your changes take effect. Note This option is recommended only for advanced users. The IIS 6 Module Configuration GUI will prevent most common configuration mistakes, but there are no such checks made when edits are made directly to the configuration file. Incorrect changes to the configuration file may cause the IIS 6 Module to stop working. Example configuration file <VASCO> <Revision type="unsigned" data="13"/> <Enabled type="unsigned" data="1"/> <Tracing> <Trace-Header type="unsigned" data="31"/> <Trace-Mask type="unsigned" data="0x "/> <Trace-File type="string" data="c:\program Files\VASCO\Digipass Authentication for IIS Basic\Log\dpiis.trace"/> </Tracing> <Idle-Timeout type="unsigned" data="5"/> <Modify-Auth-Headers type="unsigned" data="0"/> <Component-Type type="string" data="iis6 Module"/> <Error-Page type="string" data="c:\windows\help\iishelp\common\401-4.htm"/> <Encoding type="string" data="iso "/> <Realm type="string" data=""/> <Attribute-Group type="string" data=""/> <Use-Attribute-For-User-Name type="unsigned" data="0"/> <Use-Attribute-For-Password type="unsigned" data="0"/> <AAL3> <SEAL> <Local-Address type="string" data=" "/> <Connection-List> Digipass Authentication for IIS Basic Guide 40

41 Configuration <Load-Balancing type="bool" data="false"/> <Connection00> <Name type="string" data=" "/> <Address type="string" data=" "/> <Port type="unsigned" data="20003"/> <Server-Type type="string" data="primary"/> <Nr-Connections type="unsigned" data="10"/> <Min-Reconnect-Interval type="unsigned" data="30"/> <Max-Reconnect-Interval type="unsigned" data="300"/> <Timeout type="unsigned" data="60"/> </Connection00> </Connection-List> </SEAL> </AAL3> </VASCO> Caution The configuration file is UTF8 encoded. Non-UTF8 encoded characters should not be added to the configuration file, or it will not load. Digipass Authentication for IIS Basic Guide 41

42 Configuration Configuration Settings The table below lists the options, their default values, and a brief explanation of each. Table 1 Configuration Options Option Name Default Value Notes Revision 1 The current revision of the configuration. This is incremented each time the configuration is changed and allows the IIS 6 Module to automatically reload its configuration parameters. If you have manually changed configuration settings in the file, increment this setting by 1 so that your changes take effect. Enabled 1 Whether the IIS 6 Module is enabled or disabled. If disabled, does not block access, but does not intercept authentication requests they pass through unmodified. Default-Component-Type IIS6 Module Default Component type to specify when connecting to an Authentication Server. Trace/Trace-Header 31 The tracing header fields that have been enabled. This is a bitmask constructed by adding the following values: 1 Enable the Date field 2 Enable the Time field 4 Enable the Tracing level field 8 Enable the Thread ID field 16 Enable the File field 32 Enable the Line field Trace/Trace-Mask 0x Hexadecimal or decimal values: eg. for DATE,TIME,LEVEL = = 7 A value of 0 will result in no header being added to the trace output. Hex Decimal 0x No tracing 0x E Configuration and error messages only 0xFFFFFFFF All levels enabled. Trace/Trace-File <installation directory>\ Log\dpiis.trace The absolute path and filename of the file to which internal state tracing will be written. The file but not the path will be created by the IIS6 module if it does not exist. If this option is blank, the IIS 6 Module will not output tracing. Digipass Authentication for IIS Basic Guide 42

43 Configuration Option Name Default Value Notes AAL3/SEAL/Local-Address AAL3/SEAL/Connection- List/Load-Balancing AAL3/SEAL/Connection-List/ Connection <number>/ Name AAL3/SEAL/Connection-List/ Connection <number>/ Address AAL3/SEAL/Connection-List/ Connection<number>/ Port AAL3/SEAL/Connection-List/ Connection<number>/ Server-Type AAL3/SEAL/Connection-List/ Connection <number>/ Nr-Connections AAL3/SEAL/Connection-List/ Connection <number>/min- Reconnect-Interval AAL3/SEAL/Connection-List/ Connection <number>/max- Reconnect-Interval IP address automatically detected by the install program. If more than one IP address was detected, this value will be the IP address selected during installation. False <blank> The local IP address to be used when connecting to Authentication Servers. Whether load balancing is enabled for connections to Authentication Servers. Text to display in the Servers list on the Configuration IP Address of the Authentication Server Port to use in connecting to the Authentication Server for SEAL. Primary Either Primary or Backup Authentication Server. This setting affects load-balancing. 10 The maximum number of concurrent connections which the IIS 6 Module may hold open to the Authentication Server. 30 The minimum amount of time in seconds that the IIS 6 Module will leave between attempts to reconnect to a higher-priority server after losing connection to it. 300 The maximum amount of time in seconds that the IIS 6 Module will leave between attempts to reconnect to a higher-priority server after losing connection to it. Idle-Timeout 5 Session idle timeout in seconds. Modify-Auth-Headers 0 A boolean flag indicates whether the filter should perform manipulation of the raw authentication headers within the request. If modification of the headers is not required this should be disabled to improve the performance of the filter. 0 False. The headers will not be modified 1 True. The headers will be modified if necessary NOTE: Enabling this feature requires IIS to be restarted. Digipass Authentication for IIS Basic Guide 43

44 Configuration Option Name Default Value Notes Error-Page %WINDIR%\Hel p\iishelp\ Common\401-4.html This option allows you to specify a HTML page which will be presented to a User if their login is rejected by the IIS 6 Module. Realm <blank> Realm value used in IIS. See Realm for more information Encoding ISO The character encoding to use in sending a login request to the Exchange. This allows the use of international character sets (see Modify Character Set Used) Attribute-Group <blank> The Attribute Group name to use in retrieving credentials from a Digipass User account. Use-Attribute-For-User- Name 0 If this option is enabled, the IIS 6 Module will retrieve a User-Name attribute from a Digipass User account. It will replace the User ID entered during login with the attribute value before passing the request to the Exchange server. 0 Disabled. The User ID will not be replaced with the User attribute. 1 Enabled. The User ID will be replaced with the User-Name attribute. Use-Attribute-For-Password 0 If this option is enabled, the IIS 6 Module will retrieve a Password attribute from a Digipass User account. It will replace the password entered during login with the attribute value before passing the request to the Exchange server. 0 Disabled. The password will not be replaced with the User attribute. 1 Enabled. The password will be replaced with the Password User attribute. Digipass Authentication for IIS Basic Guide 44

45 Configuration Modify Character Set Used If you are using non-western European characters, the IIS 6 Module may need to be configured to use a specific character set when submitting login requests to the Exchange server. The character set to be used can be modified in the IIS 6 Module configuration file (dpmodulecfg.xml) in the <installation directory>\bin directory. Edit the Encoding setting to the desired character set code these are listed in the table below. Caution The IIS 6 Module can only be configured to use a single character set it is not able to handle multiple character sets simultaneously. Table 2 - Character Set Codes Language ISO code Windows code Other code(s) Arabic ISO CP1256 Baltic ISO or ISO CP1257 Central European ISO CP1257 Chinese Simplified ISO-2022-CN GB2312 Chinese Traditional Big5 Cyrillic ISO CP1251 Greek ISO CP1253 Hebrew ISO I CP1255 Japanese ISO-2022-JP Korean ISO-2022-KR Thai ISO CP874 Turkish ISO Vietnamese CP1258 Western European ISO CP1252 Digipass Authentication for IIS Basic Guide 45

46 Configuration 3.3 Configuring IIS to work with the IIS 6 Module Secure Areas Follow these instructions to secure any areas of your website to which Users should be logged in with an OTP to access. 1. Right-click on My Computer. 2. Click on Manage. The Computer Management window will be displayed. Digipass Authentication for IIS Basic Guide 46

47 Configuration 3. Expand the Services and Applications heading. 4. Double-click on Web Sites. 5. Find and right-click on the area to be protected. 6. Click on Properties. The web site Properties window will be displayed. 7. Click on the Directory Security tab. 8. Click on the Edit button in the Authentication and access control section. The Authentication Methods window will be displayed. Digipass Authentication for IIS Basic Guide 47

48 Configuration 9. Ensure that the Anonymous Access checkbox is unticked. 10. Tick the Basic authentication checkbox. 11. Ensure that the Integrated Windows authentication checkbox is not ticked. 12. If required, enter the Default domain. 13. If required, enter a Realm name. 14. Click on the OK button. 15. Click on the Apply button. Digipass Authentication for IIS Basic Guide 48

49 Configuration Public Areas Follow these instructions to correctly set up any areas of your website to which Users should be have anonymous access. 1. Return to the Computer Management window. 2. Find and right-click on the area to be protected. 3. Click on Properties. The web site Properties window will be displayed. 4. Click on the Directory Security tab. 5. Click on the Edit button in the Authentication and access control section. The Authentication Methods window will be displayed. 6. Tick the Anonymous Access checkbox. 7. Tick the Basic authentication checkbox. 8. Ensure that the Integrated Windows authentication checkbox is not ticked. 9. If required, enter the domain of the server that the IIS 6 Module is installed on. Digipass Authentication for IIS Basic Guide 49

50 Configuration 10. If required, enter a Realm name. 11. Click on the OK button. 12. Click on the Apply button. 13. Close the Computer Management window. Digipass Authentication for IIS Basic Guide 50

51 Configuration 3.4 Configure Authentication Server Component Record A Client Component record must be configured in the Authentication Server for the IIS 6 Module. The wizard can create the required record if: The Authentication Server is using an ODBC database (including the embedded PostgreSQL database) as its data store, or The Authentication Server is using Active Directory and the wizard can successfully connect to Active Directory from the web server. To create the Client Component record manually: 1. Create a Client Component record for the IIS 6 Module. a. The Component Type should be set to OWA. b. The Location should be set to the same IP address as in the Connect from IP Address setting in IIS 6 Module Configuration. c. Select a Policy for the Authentication Server to use when processing authentication requests from the IIS 6 Module. See for more information. 2. A valid license key must be obtained for the IIS 6 Module and loaded in to the Component record Configure for Windows User Accounts Windows User Name Resolution If the Authentication Server is installed on a Windows platform and is using an ODBC database (including the embedded database) as its data store, it is recommended that you enable Windows User Name Resolution. This allows the Authentication Server to use Windows functionality to resolve a User ID as entered during a login into a User ID and Domain. It is highly recommended if Dynamic User Registration will be enabled. This setting is not required where the Authentication Server is using Active Directory as its data store - name resolution will occur automatically. This setting is not available on Identikey Server on Linux, or axs GUARD Identifier. If the Use Windows User Name Resolution feature is disabled or unavailable, it is essential that users always use the same login name. If they try to log in using a different form of their Windows account name, their login will be rejected, unless a second Digipass User account has been created. This is essential for enabling the change password facility to work. Digipass Authentication for IIS Basic Guide 51

52 Configuration Case Sensitivity Windows User names are not case-sensitive. If the ODBC database used by the Authentication Server is casesensitive, ensure that User ID case is converted to lower case. Upper case may also be used, but will involve extra configuration steps. The embedded PostgreSQL database is set to convert to lower case by default. See the Encoding and Case Sensitivity topic in the Administrator Reference for more information Default Domain Where Users log in without entering a domain name or UPN, the Authentication Server will need to be configured to use the correct domain. There are two basic scenarios that might apply: Change Master Domain If Users will only ever be logging in to one domain via the Authentication Server, the simplest solution is to set the Master Domain name to the Fully Qualified Domain Name of the required domain. This option is not available for axs GUARD Identifier. Set Default Domain in Policy This strategy should be used if: You wish to keep the Master Domain strictly for administration accounts and separate from User accounts The Authentication Server may be required to handle a different default domain for different IIS 6 Modules or other clients Each Policy may be configured with a Default Domain, to be used if a User does not enter a domain on login. Typically, you will need to modify the Policy used by each IIS 6 Module. Digipass Authentication for IIS Basic Guide 52

53 Configuration Policy The Component record created during installation of the IIS 6 Module uses the default Password Replacement Policy for the package. It will be named: VM3 Windows Password Replacement (VACMAN Middleware) Identikey Windows Password Replacement (Identikey Server) Identikey Microsoft AD Password Replacement (axs GUARD Identifier) This Policy is configured with the following settings: Note These settings are all available on Windows but are not all available on Identikey Server on Linux or the axs GUARD Identifier. Back-End Authentication is set to If Needed (used for DUR, Password Autolearn etc, not all logins). Windows is used as the back-end authenticator in the VM3 Windows Password Replacement and Identikey Windows Password Replacement Policies. Dynamic User Registration, Password Autolearn and Stored Password Proxy are enabled. If you need different settings, either select a different Policy (eg. Self-Assignment or Auto-Assignment) for the IIS 6 Module Module Component or copy the Password Replacement Policy to a new record, modify the new Policy as required, and use the new Policy for the IIS 6 Module Component Windows Domain Login with Password Replacement These settings are typically used where the scenario described in Authorization using Domain Windows User Accounts is in place. Back-End Authentication Back-End Authentication: If Needed Back-End Protocol: Windows (Identikey Server and VACMAN Middleware) or Microsoft AD (axs GUARD Identifier) These settings allow the Authentication Server to check user login details with Active Directory in case of DUR, Password Autolearn and Self-Assignment logins through the IIS 6 Module. Digipass User Account Handling Dynamic User Registration: Enabled Password Autolearn: Enabled Digipass Authentication for IIS Basic Guide 53

54 Configuration Stored Password Proxy: Enabled These settings allow the Authentication Server to create an account for an unrecognized User based on a successful Active Directory authentication. The Authentication Server can then store the User s Windows password and replay it to the IIS 6 Module in place of the One Time Password entered by the User on future logins. Digipass Assignment Mode Either Self-Assignment or Auto-Assignment would typically be used in this scenario, although manual assignment may also be used. Local Authentication The typical setting for local authentication would be Digipass/Password, meaning that Users usually need to use an OTP when logging in, but are not required to in some circumstances (eg. in Grace Period) Windows Domain Login without Password Replacement These settings are typically used where: The web site retrieves authorization information from Active Directory Domain User accounts, and the Password Replacement model is not being used - Password Autolearn and Stored Password Proxy are disabled (see Authorization using Domain Windows User Accounts). The Authentication Server checks authentication details against Active Directory Domain User accounts only for DUR and Self-Assignment logins (see Authorization using Local Windows User Accounts, Login using Domain Windows User Accounts). Back-End Authentication Back-End Authentication: If Needed Back-End Protocol: Windows or Active Directory These settings allow the Authentication Server to check user login details with Active Directory in case of DUR and Self-Assignment logins through the IIS 6 Module. Digipass User Account Handling Dynamic User Registration: Enabled Password Autolearn: Disabled Stored Password Proxy: Disabled These settings allow the Authentication Server to create an account for an unrecognized User based on a successful Active Directory authentication. The Authentication Server will not store or replay a User s Active Directory password. Digipass Authentication for IIS Basic Guide 54

55 Configuration Digipass Assignment Mode Either Self-Assignment or Auto-Assignment would typically be used in this scenario, although manual assignment may also be used. Local Authentication The typical setting for local authentication would be Digipass/Password, meaning that Users usually need to use an OTP when logging in, but are not required to in some circumstances (eg. in Grace Period) Local Authentication Only These settings are typically used where: the Authentication Server does not check authentication details against Windows accounts (see Authorization from Local Windows User Accounts, Login using Digipass User Accounts above ). Back-End Authentication Back-End Authentication: None The Authentication Server will not check user login details with Active Directory. Digipass User Account Handling Dynamic User Registration: Disabled Password Autolearn: Disabled Stored Password Proxy: Disabled New Digipass User accounts must be created manually (no DUR). An Active Directory password is not stored, because back-end authentication is disabled. Digipass Assignment Mode Manual assignment would be used in this scenario. Local Authentication The typical setting for local authentication would be Digipass Only, requiring Users to log in with an OTP. Digipass Authentication for IIS Basic Guide 55

56 Post-Installation Tasks 4 Post-Installation Tasks 4.1 Login Failure Page The IIS 6 Module will use the standard login failure page by default. This can be found at <Windows directory>\help\iishelp\common\401-4.htm. You may wish to create a custom html page that Users will be given by the IIS 6 Module if their login fails. See Failed Login Page for information on configuring the IIS 6 Module to redirect Users to the page. Digipass Authentication for IIS Basic Guide 56

57 Troubleshooting 5 Troubleshooting 5.1 IIS 6 Module Installation Problems The installation program for the IIS 6 Module will usually complete the following tasks automatically. However, if it fails in these tasks for some reason, an error message will be displayed during installation. These steps can then be followed to complete the installation manually. If you are having trouble running the Authentication Server and the IIS 6 Module for the first time, following these steps may help you track down the problem and fix it manually Check file placement The following files must be placed in the directory they are listed under. If they have been moved to another directory, or incorrectly copied, the IIS 6 Module will not function correctly. <install directory> version.txt <install directory>\bin dpmodulecfg.xml dpiisfil.dll dpiismodcfg.exe ikaal3ldap.dll ikaal3seal.dll libeay32.dll libxml2.dll openssl.exe iisbasicwiz.exe ssleay32.dll stlport.5.1.dll wxmsw28u_vc_custom.dll Digipass Authentication for IIS Basic Guide 57

58 Troubleshooting Check Permissions Trace File Directory Permissions need to be set to allow the IIS 6 Module to access and write to the trace file. By default, the trace file is stored in <install directory>\log. Follow these steps for the folder the trace file will be written to. 1. Open Windows Explorer and browse to the directory that the trace file will be written to (<install directory>\log by default). 2. Right-click on the relevant directory. 3. Select Properties. The <directory name> Properties window will be displayed. 4. Click on the Security tab. 5. Ensure that the IIS_WPG group has Write permissions ticked. Digipass Authentication for IIS Basic Guide 58

59 Troubleshooting 6. If changes need to be made to the permissions, make changes and click on the Apply button. If the IIS_WPG group is not listed, see Add the IIS_WPG Group Configuration file 1. Open Windows Explorer and browse to the installation directory. 2. Right-click on the dpmodulecfg.xml file. 3. Select Properties. The dpmodulecfg.xml Properties window will be displayed. 4. Click on the Security tab. 5. Ensure that the IIS_WPG group has the Read permission ticked. 6. If changes were made to the permissions, click on the Apply button. If the IIS_WPG group is not listed for the configuration file, see Add the IIS_WPG Group for instructions on adding the account manually Add the IIS_WPG Group If the IIS_WPG group is not listed for the trace file directory or configuration file, you will need to add it. 1. Click on the Add button. The Select Users, Computers, or Groups window will be displayed. 2. Click on the Advanced button. Digipass Authentication for IIS Basic Guide 59

60 Troubleshooting 3. Enter search criteria (see example below) and click on the Find Now button. 4. If no search criteria are entered, a list of all users and groups in the selected location will be returned. 5. Select the IIS_WPG group. 6. Click on the OK button. 7. Check that the IIS_WPG group is listed. 8. Click on the OK button. 9. The account should now be listed in the Security group and user list. Digipass Authentication for IIS Basic Guide 60

61 Troubleshooting Set System Environment Variable 1. Right-click on My Computer. 2. Click on Properties. Digipass Authentication for IIS Basic Guide 61

62 Troubleshooting The System Properties window will be displayed. 3. Click on the Advanced tab. 4. Click on the Environment Variables button. The Environment Variables window will be displayed. Digipass Authentication for IIS Basic Guide 62

63 Troubleshooting If DPIISModuleDirectory is not displayed in the System variables list, create it manually: 5. Click on the New button. 6. Enter the following values: Variable Name: DPIISModuleDirectory Variable Value: <IIS 6 Module installation path> 7. Click on the OK button 8. Click on the OK button again. The new System variable should now appear in the System variables list. Digipass Authentication for IIS Basic Guide 63

64 Troubleshooting Install the ISAPI Filter 1. Right-click on My Computer. 2. Click on Manage. The Computer Management window will be displayed. 3. Expand the Internet Information Services heading. Digipass Authentication for IIS Basic Guide 64

65 Troubleshooting 4. Right-click on Web Sites. 5. Click on Properties. The Web Sites Properties window will be displayed. 6. Click on the ISAPI Filters tab 7. If the Digipass Authentication Filter is not included in the list, add it manually: a. Click on the Add button. b. Enter these values: Filter Name: Digipass Authentication Filter Executable: c. Click on the OK button. <install directory>\bin\dpiisfil.dll The Digipass Authentication Filter should now appear in the list of ISAPI filters however the status will not be set to until the IIS 6 Module has been successfully loaded into Internet Information Services. This will occur when the first authentication request is processed by the IIS 6 Module. Digipass Authentication for IIS Basic Guide 65

2007 Digipass Pack for OWA 2007 Basic Authentication IIS IIS 6 Module Authentication Server web site Digipass Pack for OWA 2007 Basic Authentication

2007 Digipass Pack for OWA 2007 Basic Authentication IIS IIS 6 Module Authentication Server web site Digipass Pack for OWA 2007 Basic Authentication 2007 Digipass Pack for OWA 2007 Basic Authentication IIS IIS 6 Module Authentication Server web site Digipass Pack for OWA 2007 Basic Authentication 3.0 dppack Basic Forms Disclaimer of Warranties and

More information

DIGIPASS Authentication for Remote Desktop Web Access User Manual 3.4

DIGIPASS Authentication for Remote Desktop Web Access User Manual 3.4 DIGIPASS Authentication for Remote Desktop Web Access User Manual 3.4 Disclaimer Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties,

More information

Digipass Plug-In for IAS. IAS Plug-In IAS. Microsoft's Internet Authentication Service. Installation Guide

Digipass Plug-In for IAS. IAS Plug-In IAS. Microsoft's Internet Authentication Service. Installation Guide Digipass Plug-In for IAS IAS Plug-In IAS Microsoft's Internet Authentication Service Installation Guide Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations

More information

DIGIPASS Authentication for Windows Logon Getting Started Guide 1.1

DIGIPASS Authentication for Windows Logon Getting Started Guide 1.1 DIGIPASS Authentication for Windows Logon Getting Started Guide 1.1 Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or

More information

Identikey Server Getting Started Guide 3.1

Identikey Server Getting Started Guide 3.1 Identikey Server Getting Started Guide 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without

More information

Digipass Plug-In for IAS. IAS Plug-In IAS. Microsoft's Internet Authentication Service. Getting Started

Digipass Plug-In for IAS. IAS Plug-In IAS. Microsoft's Internet Authentication Service. Getting Started Digipass Plug-In for IAS IAS Plug-In IAS Microsoft's Internet Authentication Service Getting Started Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of

More information

Identikey Server Windows Installation Guide 3.1

Identikey Server Windows Installation Guide 3.1 Identikey Server Windows Installation Guide 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis,

More information

DIGIPASS Authentication for Windows Logon Product Guide 1.1

DIGIPASS Authentication for Windows Logon Product Guide 1.1 DIGIPASS Authentication for Windows Logon Product Guide 1.1 Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or conditions,

More information

Identikey Server Performance and Deployment Guide 3.1

Identikey Server Performance and Deployment Guide 3.1 Identikey Server Performance and Deployment Guide 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is'

More information

IDENTIKEY Server Windows Installation Guide 3.1

IDENTIKEY Server Windows Installation Guide 3.1 IDENTIKEY Server Windows Installation Guide 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis,

More information

I n s t a lla t io n G u id e

I n s t a lla t io n G u id e Modify these field values (right-click and select Fields) to change text throughout the document: NOTE: Diagrams may appear or disappear depending on these field settings so BE CAREFUL adding and removing

More information

INTEGRATION GUIDE. DIGIPASS Authentication for Office 365 using IDENTIKEY Authentication Server with Basic Web Filter

INTEGRATION GUIDE. DIGIPASS Authentication for Office 365 using IDENTIKEY Authentication Server with Basic Web Filter INTEGRATION GUIDE DIGIPASS Authentication for Office 365 using IDENTIKEY Authentication Server with Basic Web Filter Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained

More information

DIGIPASS Authentication for Citrix Access Gateway VPN Connections

DIGIPASS Authentication for Citrix Access Gateway VPN Connections DIGIPASS Authentication for Citrix Access Gateway VPN Connections With VASCO Digipass Pack for Citrix 2006 VASCO Data Security. All rights reserved. Page 1 of 31 Integration Guideline Disclaimer Disclaimer

More information

DIGIPASS Authentication for Citrix XenDesktop Web Interface

DIGIPASS Authentication for Citrix XenDesktop Web Interface DIGIPASS Authentication for Citrix XenDesktop Web Interface With VASCO DIGIPASS Pack for Citrix 2008 VASCO Data Security. All rights reserved. Page 1 of 44 Integration Guideline Disclaimer Disclaimer of

More information

IDENTIKEY Server Windows Installation Guide 3.2

IDENTIKEY Server Windows Installation Guide 3.2 IDENTIKEY Server Windows Installation Guide 3.2 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis,

More information

Identikey Server Administrator Reference 3.1

Identikey Server Administrator Reference 3.1 Identikey Server Administrator Reference 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis,

More information

DIGIPASS Authentication for GajShield GS Series

DIGIPASS Authentication for GajShield GS Series DIGIPASS Authentication for GajShield GS Series With Vasco VACMAN Middleware 3.0 2008 VASCO Data Security. All rights reserved. Page 1 of 1 Integration Guideline Disclaimer Disclaimer of Warranties and

More information

Release Notes. Identikey Server Release Notes 3.1

Release Notes. Identikey Server Release Notes 3.1 Release Notes Identikey Server Release Notes 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis,

More information

DIGIPASS Authentication for Check Point Connectra

DIGIPASS Authentication for Check Point Connectra DIGIPASS Authentication for Check Point Connectra With IDENTIKEY Server 2009 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 21 Disclaimer Disclaimer of Warranties and Limitations

More information

IDENTIKEY Server Administrator Reference 3.1

IDENTIKEY Server Administrator Reference 3.1 IDENTIKEY Server Administrator Reference 3.1 Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or conditions, express or

More information

Identikey Server Product Guide 3.0 3.1

Identikey Server Product Guide 3.0 3.1 Identikey Server Product Guide 3.0 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without

More information

IDENTIKEY Server Product Guide 3.0 3.1

IDENTIKEY Server Product Guide 3.0 3.1 IDENTIKEY Server Product Guide 3.0 3.1 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without

More information

A dm inistrator Reference

A dm inistrator Reference Digipass Plug-In for IAS IAS Plug-In Digipass Extension for Active Directory Users and Computers Administration MMC Interface IAS Microsoft's Internet Authentication Service SBR Funk Steel-Belted RADIUS

More information

DIGIPASS Authentication for Check Point Security Gateways

DIGIPASS Authentication for Check Point Security Gateways DIGIPASS Authentication for Check Point Security Gateways With IDENTIKEY Server 2009 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 38 Disclaimer Disclaimer of Warranties and

More information

Creation date: 09/05/2007 Last Review: 31/01/2008 Revision number: 3

Creation date: 09/05/2007 Last Review: 31/01/2008 Revision number: 3 Middleware 3.0 troubleshooting Creation date: 09/05/2007 Last Review: 31/01/2008 Revision number: 3 Document type: Whitepaper Security status: EXTERNAL Summary This document explains how to troubleshoot

More information

Digipass for Citrix VM3.0: troubleshooting guide. Creation date: 11/07/2007 Last Review: 30/11/2007 Revision number: 2

Digipass for Citrix VM3.0: troubleshooting guide. Creation date: 11/07/2007 Last Review: 30/11/2007 Revision number: 2 Digipass for Citrix VM3.0: troubleshooting guide Creation date: 11/07/2007 Last Review: 30/11/2007 Revision number: 2 Document type: Whitepaper Security status: EXTERNAL Summary This document describes

More information

DIGIPASS Authentication for Cisco ASA 5500 Series

DIGIPASS Authentication for Cisco ASA 5500 Series DIGIPASS Authentication for Cisco ASA 5500 Series With IDENTIKEY Server 2010 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 20 Disclaimer Disclaimer of Warranties and Limitations

More information

Configuration Guide. SafeNet Authentication Service. SAS Agent for Microsoft Internet Information Services (IIS)

Configuration Guide. SafeNet Authentication Service. SAS Agent for Microsoft Internet Information Services (IIS) SafeNet Authentication Service Configuration Guide Technical Manual Template Release 1.0, PN: 000-000000-000, Rev. A, March 2013, Copyright 2013 SafeNet, Inc. All rights reserved. 1 Document Information

More information

Agent Configuration Guide

Agent Configuration Guide SafeNet Authentication Service Agent Configuration Guide SAS Agent for Microsoft Internet Information Services (IIS) Technical Manual Template Release 1.0, PN: 000-000000-000, Rev. A, March 2013, Copyright

More information

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Outlook Web Access

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Outlook Web Access DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Outlook Web Access With IDENTIKEY Server / Axsguard IDENTIFIER Integration Guidelines Disclaimer Disclaimer of Warranties and Limitations

More information

WhatsUp Gold v16.3 Installation and Configuration Guide

WhatsUp Gold v16.3 Installation and Configuration Guide WhatsUp Gold v16.3 Installation and Configuration Guide Contents Installing and Configuring WhatsUp Gold using WhatsUp Setup Installation Overview... 1 Overview... 1 Security considerations... 2 Standard

More information

DIGIPASS Authentication for Sonicwall Aventail SSL VPN

DIGIPASS Authentication for Sonicwall Aventail SSL VPN DIGIPASS Authentication for Sonicwall Aventail SSL VPN With VASCO IDENTIKEY Server 3.0 Integration Guideline 2009 Vasco Data Security. All rights reserved. PAGE 1 OF 52 Disclaimer Disclaimer of Warranties

More information

Dell Statistica 13.0. Statistica Enterprise Installation Instructions

Dell Statistica 13.0. Statistica Enterprise Installation Instructions Dell Statistica 13.0 2015 Dell Inc. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described in this guide is furnished under a software license or

More information

INTEGRATION GUIDE. DIGIPASS Authentication for Cisco ASA 5505

INTEGRATION GUIDE. DIGIPASS Authentication for Cisco ASA 5505 INTEGRATION GUIDE DIGIPASS Authentication for Cisco ASA 5505 Disclaimer DIGIPASS Authentication for Cisco ASA5505 Disclaimer of Warranties and Limitation of Liabilities All information contained in this

More information

Strong Authentication for Microsoft TS Web / RD Web

Strong Authentication for Microsoft TS Web / RD Web Strong Authentication for Microsoft TS Web / RD Web with Powerful Authentication Management for Service Providers and Enterprises Authentication Service Delivery Made EASY Copyright Copyright 2011. CRYPTOCard

More information

Strong Authentication for Microsoft SharePoint

Strong Authentication for Microsoft SharePoint Strong Authentication for Microsoft SharePoint with Powerful Authentication Management for Service Providers and Enterprises Authentication Service Delivery Made EASY Copyright Copyright 2011. CRYPTOCard

More information

DIGIPASS Pack for Citrix on WI 4.5 does not detect a login attempt. Creation date: 28/02/2008 Last Review: 04/03/2008 Revision number: 2

DIGIPASS Pack for Citrix on WI 4.5 does not detect a login attempt. Creation date: 28/02/2008 Last Review: 04/03/2008 Revision number: 2 DIGIPASS Pack for Citrix on WI 4.5 does not detect a login attempt. Creation date: 28/02/2008 Last Review: 04/03/2008 Revision number: 2 Document type: How To Security status: EXTERNAL Summary This document

More information

DIGIPASS KEY series and smart card series for Juniper SSL VPN Authentication

DIGIPASS KEY series and smart card series for Juniper SSL VPN Authentication DIGIPASS KEY series and smart card series for Juniper SSL VPN Authentication Certificate Based 2010 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 31 Disclaimer Disclaimer of

More information

Installation Guide. Novell Storage Manager 3.1.1 for Active Directory. Novell Storage Manager 3.1.1 for Active Directory Installation Guide

Installation Guide. Novell Storage Manager 3.1.1 for Active Directory. Novell Storage Manager 3.1.1 for Active Directory Installation Guide Novell Storage Manager 3.1.1 for Active Directory Installation Guide www.novell.com/documentation Installation Guide Novell Storage Manager 3.1.1 for Active Directory October 17, 2013 Legal Notices Condrey

More information

WhatsUp Gold v16.2 Installation and Configuration Guide

WhatsUp Gold v16.2 Installation and Configuration Guide WhatsUp Gold v16.2 Installation and Configuration Guide Contents Installing and Configuring Ipswitch WhatsUp Gold v16.2 using WhatsUp Setup Installing WhatsUp Gold using WhatsUp Setup... 1 Security guidelines

More information

HELP DOCUMENTATION SSRPM WEB INTERFACE GUIDE

HELP DOCUMENTATION SSRPM WEB INTERFACE GUIDE HELP DOCUMENTATION SSRPM WEB INTERFACE GUIDE Copyright 1998-2013 Tools4ever B.V. All rights reserved. No part of the contents of this user guide may be reproduced or transmitted in any form or by any means

More information

DIGIPASS CertiID. Getting Started 3.1.0

DIGIPASS CertiID. Getting Started 3.1.0 DIGIPASS CertiID Getting Started 3.1.0 Disclaimer Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or conditions, express

More information

formerly Help Desk Authority 9.1.3 Upgrade Guide

formerly Help Desk Authority 9.1.3 Upgrade Guide formerly Help Desk Authority 9.1.3 Upgrade Guide 2 Contacting Quest Software Email: Mail: Web site: info@quest.com Quest Software, Inc. World Headquarters 5 Polaris Way Aliso Viejo, CA 92656 USA www.quest.com

More information

Dell NetVault Backup Plug-in for SQL Server 6.1

Dell NetVault Backup Plug-in for SQL Server 6.1 Dell NetVault Backup Plug-in for SQL Server 6.1 April 2014 These release notes provide information about the Dell NetVault Backup Plug-in for SQL Server release. About Enhancements Resolved issues Known

More information

4.0 SP1 (4.0.1.0) November 2014 702P03296. Xerox FreeFlow Core Installation Guide: Windows Server 2008 R2

4.0 SP1 (4.0.1.0) November 2014 702P03296. Xerox FreeFlow Core Installation Guide: Windows Server 2008 R2 4.0 SP1 (4.0.1.0) November 2014 702P03296 Installation Guide: Windows Server 2008 R2 2014 Xerox Corporation. All rights reserved. Xerox, Xerox and Design, FreeFlow, and VIPP are trademarks of Xerox Corporation

More information

High Availability Setup Guide

High Availability Setup Guide High Availability Setup Guide Version: 9.0 Released: March 2015 Companion Guides: The UniPrint Infinity Administrator s Guide, Cluster Guide and Mobile Setup Guide can be found online for your convenience

More information

CRM Migration Manager 3.1.1 for Microsoft Dynamics CRM. User Guide

CRM Migration Manager 3.1.1 for Microsoft Dynamics CRM. User Guide CRM Migration Manager 3.1.1 for Microsoft Dynamics CRM User Guide Revision D Issued July 2014 Table of Contents About CRM Migration Manager... 4 System Requirements... 5 Operating Systems... 5 Dynamics

More information

TIBCO Spotfire Web Player 6.0. Installation and Configuration Manual

TIBCO Spotfire Web Player 6.0. Installation and Configuration Manual TIBCO Spotfire Web Player 6.0 Installation and Configuration Manual Revision date: 12 November 2013 Important Information SOME TIBCO SOFTWARE EMBEDS OR BUNDLES OTHER TIBCO SOFTWARE. USE OF SUCH EMBEDDED

More information

Siteminder Integration Guide

Siteminder Integration Guide Integrating Siteminder with SA SA - Siteminder Integration Guide Abstract The Junos Pulse Secure Access (SA) platform supports the Netegrity Siteminder authentication and authorization server along with

More information

IDENTIKEY Appliance Administrator Guide 3.3.5.0 3.6.8

IDENTIKEY Appliance Administrator Guide 3.3.5.0 3.6.8 IDENTIKEY Appliance Administrator Guide 3.3.5.0 3.6.8 Disclaimer of Warranties and Limitations of Liabilities Legal Notices Copyright 2008 2015 VASCO Data Security, Inc., VASCO Data Security International

More information

Backup Exec 15. Quick Installation Guide

Backup Exec 15. Quick Installation Guide Backup Exec 15 Quick Installation Guide 21344987 Documentation version: 15 PN: 21344987 Legal Notice Copyright 2015 Symantec Corporation. All rights reserved. Symantec, the Symantec Logo, the Checkmark

More information

SELF SERVICE RESET PASSWORD MANAGEMENT WEB INTERFACE GUIDE

SELF SERVICE RESET PASSWORD MANAGEMENT WEB INTERFACE GUIDE SELF SERVICE RESET PASSWORD MANAGEMENT WEB INTERFACE GUIDE Copyright 1998-2015 Tools4ever B.V. All rights reserved. No part of the contents of this user guide may be reproduced or transmitted in any form

More information

WhatsUp Gold v16.1 Installation and Configuration Guide

WhatsUp Gold v16.1 Installation and Configuration Guide WhatsUp Gold v16.1 Installation and Configuration Guide Contents Installing and Configuring Ipswitch WhatsUp Gold v16.1 using WhatsUp Setup Installing WhatsUp Gold using WhatsUp Setup... 1 Security guidelines

More information

IIS SECURE ACCESS FILTER 1.3

IIS SECURE ACCESS FILTER 1.3 OTP SERVER INTEGRATION MODULE IIS SECURE ACCESS FILTER 1.3 Copyright, NordicEdge, 2006 www.nordicedge.se Copyright, 2006, Nordic Edge AB Page 1 of 14 1 Introduction 1.1 Overview Nordic Edge One Time Password

More information

MGC WebCommander Web Server Manager

MGC WebCommander Web Server Manager MGC WebCommander Web Server Manager Installation and Configuration Guide Version 8.0 Copyright 2006 Polycom, Inc. All Rights Reserved Catalog No. DOC2138B Version 8.0 Proprietary and Confidential The information

More information

CA Nimsoft Monitor. Probe Guide for IIS Server Monitoring. iis v1.5 series

CA Nimsoft Monitor. Probe Guide for IIS Server Monitoring. iis v1.5 series CA Nimsoft Monitor Probe Guide for IIS Server Monitoring iis v1.5 series Legal Notices Copyright 2013, CA. All rights reserved. Warranty The material contained in this document is provided "as is," and

More information

Installation Guide for Pulse on Windows Server 2008R2

Installation Guide for Pulse on Windows Server 2008R2 MadCap Software Installation Guide for Pulse on Windows Server 2008R2 Pulse Copyright 2014 MadCap Software. All rights reserved. Information in this document is subject to change without notice. The software

More information

2X ApplicationServer & LoadBalancer Manual

2X ApplicationServer & LoadBalancer Manual 2X ApplicationServer & LoadBalancer Manual 2X ApplicationServer & LoadBalancer Contents 1 URL: www.2x.com E-mail: info@2x.com Information in this document is subject to change without notice. Companies,

More information

DIGIPASS Authentication for SonicWALL SSL-VPN

DIGIPASS Authentication for SonicWALL SSL-VPN DIGIPASS Authentication for SonicWALL SSL-VPN With VACMAN Middleware 3.0 2006 VASCO Data Security. All rights reserved. Page 1 of 53 Integration Guideline Disclaimer Disclaimer of Warranties and Limitations

More information

2X Cloud Portal v10.5

2X Cloud Portal v10.5 2X Cloud Portal v10.5 URL: www.2x.com E-mail: info@2x.com Information in this document is subject to change without notice. Companies, names, and data used in examples herein are fictitious unless otherwise

More information

Digipass Plug-In for IAS troubleshooting guide. Creation date: 15/03/2007 Last Review: 24/09/2007 Revision number: 3

Digipass Plug-In for IAS troubleshooting guide. Creation date: 15/03/2007 Last Review: 24/09/2007 Revision number: 3 Digipass Plug-In for IAS troubleshooting guide. Creation date: 15/03/2007 Last Review: 24/09/2007 Revision number: 3 Document type: Whitepaper Security status: EXTERNAL Summary This document explains how

More information

Quick Install Guide. Lumension Endpoint Management and Security Suite 7.1

Quick Install Guide. Lumension Endpoint Management and Security Suite 7.1 Quick Install Guide Lumension Endpoint Management and Security Suite 7.1 Lumension Endpoint Management and Security Suite - 2 - Notices Version Information Lumension Endpoint Management and Security Suite

More information

Dell InTrust 11.0. Preparing for Auditing Microsoft SQL Server

Dell InTrust 11.0. Preparing for Auditing Microsoft SQL Server 2014 Dell Inc. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described in this guide is furnished under a software license or nondisclosure agreement.

More information

MailEnable Connector for Microsoft Outlook

MailEnable Connector for Microsoft Outlook MailEnable Connector for Microsoft Outlook Version 2.23 This guide describes the installation and functionality of the MailEnable Connector for Microsoft Outlook. Features The MailEnable Connector for

More information

SafeGuard Enterprise Web Helpdesk. Product version: 6.1

SafeGuard Enterprise Web Helpdesk. Product version: 6.1 SafeGuard Enterprise Web Helpdesk Product version: 6.1 Document date: February 2014 Contents 1 SafeGuard web-based Challenge/Response...3 2 Scope of Web Helpdesk...4 3 Installation...5 4 Allow Web Helpdesk

More information

BlackShield ID Agent for Remote Web Workplace

BlackShield ID Agent for Remote Web Workplace Agent for Remote Web Workplace 2010 CRYPTOCard Corp. All rights reserved. http:// www.cryptocard.com Copyright Copyright 2010, CRYPTOCard All Rights Reserved. No part of this publication may be reproduced,

More information

Alarm Client. Installation and User Guide. NEC NEC Infrontia Corporation. July 2008 NDA-30364, Revision 8

Alarm Client. Installation and User Guide. NEC NEC Infrontia Corporation. July 2008 NDA-30364, Revision 8 Alarm Client Installation and User Guide NEC NEC Infrontia Corporation July 2008 NDA-30364, Revision 8 Liability Disclaimer NEC Infrontia Corporation reserves the right to change the specifications, functions,

More information

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Sharepoint 2007

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Sharepoint 2007 DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Sharepoint 2007 With IDENTIKEY Server / Axsguard IDENTIFIER Integration Guidelines Disclaimer Disclaimer of Warranties and Limitations

More information

axsguard Gatekeeper Internet Redundancy How To v1.2

axsguard Gatekeeper Internet Redundancy How To v1.2 axsguard Gatekeeper Internet Redundancy How To v1.2 axsguard Gatekeeper Internet Redundancy How To v1.2 Legal Notice VASCO Products VASCO data Security, Inc. and/or VASCO data Security International GmbH

More information

Configuration Guide. SafeNet Authentication Service. SAS Agent for Microsoft Remote Web Workplace

Configuration Guide. SafeNet Authentication Service. SAS Agent for Microsoft Remote Web Workplace SafeNet Authentication Service Configuration Guide Technical Manual Template Release 1.0, PN: 000-000000-000, Rev. A, March 2013, Copyright 2013 SafeNet, Inc. All rights reserved. 1 Document Information

More information

Strong Authentication for Juniper Networks SSL VPN

Strong Authentication for Juniper Networks SSL VPN Strong Authentication for Juniper Networks SSL VPN with Powerful Authentication Management for Service Providers and Enterprises Authentication Service Delivery Made EASY Copyright Copyright 2011. CRYPTOCard

More information

GFI Product Manual. Outlook Connector User Manual

GFI Product Manual. Outlook Connector User Manual GFI Product Manual Outlook Connector User Manual http://www.gfi.com info@gfi.com The information and content in this document is provided for informational purposes only and is provided "as is" with no

More information

Installation Guide for Pulse on Windows Server 2012

Installation Guide for Pulse on Windows Server 2012 MadCap Software Installation Guide for Pulse on Windows Server 2012 Pulse Copyright 2014 MadCap Software. All rights reserved. Information in this document is subject to change without notice. The software

More information

Installation Guide Supplement

Installation Guide Supplement Installation Guide Supplement for use with Microsoft ISA Server and Forefront TMG Websense Web Security Websense Web Filter v7.5 1996 2010, Websense Inc. All rights reserved. 10240 Sorrento Valley Rd.,

More information

Outlook Profile Setup Guide Exchange 2010 Quick Start and Detailed Instructions

Outlook Profile Setup Guide Exchange 2010 Quick Start and Detailed Instructions HOSTING Administrator Control Panel / Quick Reference Guide Page 1 of 9 Outlook Profile Setup Guide Exchange 2010 Quick Start and Detailed Instructions Exchange 2010 Outlook Profile Setup Page 2 of 9 Exchange

More information

MadCap Software. Upgrading Guide. Pulse

MadCap Software. Upgrading Guide. Pulse MadCap Software Upgrading Guide Pulse Copyright 2014 MadCap Software. All rights reserved. Information in this document is subject to change without notice. The software described in this document is furnished

More information

NETWRIX ACCOUNT LOCKOUT EXAMINER

NETWRIX ACCOUNT LOCKOUT EXAMINER NETWRIX ACCOUNT LOCKOUT EXAMINER ADMINISTRATOR S GUIDE Product Version: 4.1 July 2014. Legal Notice The information in this publication is furnished for information use only, and does not constitute a

More information

INTEGRATION GUIDE. DIGIPASS Authentication for Microsoft Exchange ActiveSync 2007

INTEGRATION GUIDE. DIGIPASS Authentication for Microsoft Exchange ActiveSync 2007 INTEGRATION GUIDE DIGIPASS Authentication for Microsoft Exchange ActiveSync 2007 Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is provided

More information

INTEGRATION GUIDE. DIGIPASS Authentication for F5 FirePass

INTEGRATION GUIDE. DIGIPASS Authentication for F5 FirePass INTEGRATION GUIDE DIGIPASS Authentication for F5 FirePass Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is provided 'as is'; VASCO Data Security

More information

DIGIPASS Authentication for Microsoft ISA 2006 VPN Connections

DIGIPASS Authentication for Microsoft ISA 2006 VPN Connections DIGIPASS Authentication for Microsoft ISA 2006 VPN Connections With IDENTIKEY Server / Axsguard IDENTIFIER 2010 VASCO Data Security. All rights reserved. Page 1 of 19 Integration Guidelines Disclaimer

More information

INTEGRATION GUIDE. DIGIPASS Authentication for Citrix NetScaler (with AGEE)

INTEGRATION GUIDE. DIGIPASS Authentication for Citrix NetScaler (with AGEE) INTEGRATION GUIDE DIGIPASS Authentication for Citrix NetScaler (with AGEE) Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is provided 'as is';

More information

SafeGuard Enterprise Web Helpdesk. Product version: 6 Document date: February 2012

SafeGuard Enterprise Web Helpdesk. Product version: 6 Document date: February 2012 SafeGuard Enterprise Web Helpdesk Product version: 6 Document date: February 2012 Contents 1 SafeGuard web-based Challenge/Response...3 2 Installation...5 3 Authentication...8 4 Select the Web Helpdesk

More information

GRAVITYZONE HERE. Deployment Guide VLE Environment

GRAVITYZONE HERE. Deployment Guide VLE Environment GRAVITYZONE HERE Deployment Guide VLE Environment LEGAL NOTICE All rights reserved. No part of this document may be reproduced or transmitted in any form or by any means, electronic or mechanical, including

More information

Total Recall Web. Web Module Manual and Customer Quick Reference Guides

Total Recall Web. Web Module Manual and Customer Quick Reference Guides Total Recall Web Web Module Manual and Customer Quick Reference Guides COPYRIGHT NOTICE Copyright 1994-2009 by DHS Associates, Inc. All Rights Reserved. All TOTAL RECALL, TOTAL RECALL SQL, TOTAL RECALL

More information

IceWarp to IceWarp Server Migration

IceWarp to IceWarp Server Migration IceWarp to IceWarp Server Migration Registered Trademarks iphone, ipad, Mac, OS X are trademarks of Apple Inc., registered in the U.S. and other countries. Microsoft, Windows, Outlook and Windows Phone

More information

Hyper-V Installation Guide. Version 8.0.0

Hyper-V Installation Guide. Version 8.0.0 Hyper-V Installation Guide Version 8.0.0 Table of Contents 1. Introduction... 1 1.1. About this Document... 1 1.2. Documentation and Training... 1 1.3. About the AXS GUARD... 1 1.3.1. Introduction... 1

More information

Microsoft SQL Server 2014. Installation Guide

Microsoft SQL Server 2014. Installation Guide Microsoft SQL Server 2014 Installation Guide Notices 2015 XMPie Inc. All rights reserved. U.S. Patents 6948115, 7406194, 7548338, 7757169 and pending patents. JP Patent 4406364B and pending patents. Microsoft

More information

INTEGRATION GUIDE. DIGIPASS Authentication for Juniper SSL-VPN

INTEGRATION GUIDE. DIGIPASS Authentication for Juniper SSL-VPN INTEGRATION GUIDE DIGIPASS Authentication for Juniper SSL-VPN Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is provided 'as is'; VASCO Data

More information

CA Spectrum and CA Service Desk

CA Spectrum and CA Service Desk CA Spectrum and CA Service Desk Integration Guide CA Spectrum 9.4 / CA Service Desk r12 and later This Documentation, which includes embedded help systems and electronically distributed materials, (hereinafter

More information

2X ApplicationServer & LoadBalancer Manual

2X ApplicationServer & LoadBalancer Manual 2X ApplicationServer & LoadBalancer Manual 2X ApplicationServer & LoadBalancer Contents 1 URL: www.2x.com E-mail: info@2x.com Information in this document is subject to change without notice. Companies,

More information

Installation and Configuration Guide

Installation and Configuration Guide Installation and Configuration Guide BlackBerry Resource Kit for BlackBerry Enterprise Service 10 Version 10.2 Published: 2015-11-12 SWD-20151112124827386 Contents Overview: BlackBerry Enterprise Service

More information

FortiAuthenticator Agent for Microsoft IIS/OWA. Install Guide

FortiAuthenticator Agent for Microsoft IIS/OWA. Install Guide FortiAuthenticator Agent for Microsoft IIS/OWA Install Guide FortiAuthenticator Agent for Microsoft IIS/OWA Install Guide February 5, 2015 Revision 1 Copyright 2015 Fortinet, Inc. All rights reserved.

More information

Dell Statistica Document Management System (SDMS) Installation Instructions

Dell Statistica Document Management System (SDMS) Installation Instructions Dell Statistica Document Management System (SDMS) Installation Instructions 2015 Dell Inc. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described

More information

CA Nimsoft Monitor Snap

CA Nimsoft Monitor Snap CA Nimsoft Monitor Snap Configuration Guide for IIS Server Monitoring iis v1.5 series Legal Notices This online help system (the "System") is for your informational purposes only and is subject to change

More information

Enabling Kerberos SSO in IBM Cognos Express on Windows Server 2008

Enabling Kerberos SSO in IBM Cognos Express on Windows Server 2008 Enabling Kerberos SSO in IBM Cognos Express on Windows Server 2008 Nature of Document: Guideline Product(s): IBM Cognos Express Area of Interest: Infrastructure 2 Copyright and Trademarks Licensed Materials

More information

INTEGRATION GUIDE. DIGIPASS Authentication for Citrix Access Essentials 2.0 Web Interface

INTEGRATION GUIDE. DIGIPASS Authentication for Citrix Access Essentials 2.0 Web Interface INTEGRATION GUIDE DIGIPASS Authentication for Citrix Access Essentials 2.0 Web Interface Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is

More information

Nexio Connectus with Nexio G-Scribe

Nexio Connectus with Nexio G-Scribe Nexio Connectus with Nexio G-Scribe 2.1.2 3/20/2014 Edition: A 2.1.2 Publication Information 2014 Imagine Communications. Proprietary and Confidential. Imagine Communications considers this document and

More information

DameWare Server. Administrator Guide

DameWare Server. Administrator Guide DameWare Server Administrator Guide About DameWare Contact Information Team Contact Information Sales 1.866.270.1449 General Support Technical Support Customer Service User Forums http://www.dameware.com/customers.aspx

More information

Installation Instruction STATISTICA Enterprise Server

Installation Instruction STATISTICA Enterprise Server Installation Instruction STATISTICA Enterprise Server Notes: ❶ The installation of STATISTICA Enterprise Server entails two parts: a) a server installation, and b) workstation installations on each of

More information

Modular Messaging. Release 4.0 Service Pack 4. Whitepaper: Support for Active Directory and Exchange 2007 running on Windows Server 2008 platforms.

Modular Messaging. Release 4.0 Service Pack 4. Whitepaper: Support for Active Directory and Exchange 2007 running on Windows Server 2008 platforms. Modular Messaging Release 4.0 Service Pack 4 Whitepaper: Support for Active Directory and Exchange 2007 running on Windows Server 2008 platforms. April 2009 2006-2009 Avaya Inc. All Rights Reserved. Notice

More information