Active Directory Federation Services

Size: px
Start display at page:

Download "Active Directory Federation Services"

Transcription

1 Active Directory Federation Services Installation Instructions for WebEx Messenger and WebEx Centers Single Sign- On for Windows 2008 R2 WBS29

2 Copyright Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco WebEx logo are trademarks or registered trademarks of Cisco and/or its affiliated entities in the United States and other countries. Third- party trademarks are the property of their respective owners. U.S. Government End User Purchasers. The Documentation and related Services qualify as "commercial items," as that term is defined at Federal Acquisition Regulation ("FAR") (48 C.F.R.) Consistent with FAR and DoD FAR Supp through , and notwithstanding any other FAR or other contractual clause to the contrary in any agreement into which the Agreement may be incorporated, Customer may provide to Government end user or, if the Agreement is direct, Government end user will acquire, the Services and Documentation with only those rights set forth in the Agreement. Use of either the Services or Documentation or both constitutes agreement by the Government that the Services and Documentation are commercial items and constitutes acceptance of the rights and restrictions herein. Last updated:

3 Table of Contents Introduction and Prerequisites... 1 Introduction... 1 Prerequisites... 1 Downloading and Installing ADFS Accessing the ADFS Installation File... 3 Creating a Self- Signed Certificate in IIS... 5 Configuring an ADFS 2.0 First Run Exporting a Token Signing Certificate Configuring WebEx Centers Configuring WebEx Messenger Configuring ADFS 2.0 for a Relay Party Trust Edit Claim Rules for Login Setup Auto Account Creation Setup Auto Account Update Testing the Connection in WebEx Centers Testing the Connection in WebEx Messenger i

4 Appendix Index ii

5 Chapter 1 1 Introduction and Prerequisites Introduction Prerequisites This document covers the installation and configuration of the required software components essential for achieving a Single Sign- On (SSO) solution with Active Directory Federation Services (ADFS). The environment of each customer differs and the ability to match each of these environments is not feasible. These instructions are supplied, as a best effort, to match the base installation from Microsoft Windows 2008 R2. ADFS 2.0 is only available on Windows 2008 R2 and above. The instructions listed below should be reviewed by your system administrator. Prerequisites required prior to ADFS installation include the following: Active Directory Domain Services (AD DS) must be configured correctly with at least one user listed. User accounts must have, at a minimum, an address, SAM- Account- Name or UPN, first name, and last name. Note: The installation and configuration of Active Directory, LDAP, or IWA is outside the scope of this document. 1

6 Introduction and Prerequisites Verify your WebEx site, or Messenger Organization is setup for SSO by doing one or both of the following: Login to the WebEx site administrator page. On the left navigation menu you should have a link for SSO Configuration. On WebEx Messenger verify you have a Federation Web SSO Configuration link listed under Security Settings. If your WebEx site, or Messenger Organization is not configured for SSO, please contact your WebEx account manager and ask to have it enabled. Note: If your WebEx site or Messenger Organization is not configured for SSO, please contact your WebEx account manager for configuration assistance. 2

7 Chapter 2 2 Downloading and Installing ADFS 2.0 Accessing the ADFS Installation File The download link for ADFS 2.0 is located at However, if this link is no longer active perform a web search to find the most recent download link. To install ADFS: 1. Download the installation file onto your desktop from the Microsoft Download Centre. 2. Double- click the file to start the installation. 3. Select Run. 3

8 Downloading and Installing ADFS Select Next to continue. 5. Select the I accept the terms in the License Agreement check box and select Next. 6. In the Server Role screen, ensure the Federation server radio button is selected and select Next. 7. Review the prerequisites and select Next. 8. Once the installation is complete, select the Start the AD FS 2.0 Management snap- in when the wizard closes check box. 9. Select Finish to close the installation wizard. 4

9 Chapter 3 3 Creating a Self- Signed Certificate in IIS Important: If you are planning on using a CA Certificate you can skip this step. Creating, signing, and importing a CA Certificate is outside the scope of WebEx support for ADFS. Contact your system administrator for help with this process. To create a self- signed certificate in IIS: 1. Select the Start menu > Administrative Tools > Internet Information Services (IIS) Manager. Note: We recommend using a server name the DNS server can resolve. 5

10 Creating a Self- Signed Certificate in IIS 2. When IIS Manager loads, select the server home icon and the Server Certificates icon. 3. On the Server Certificate screen under Actions, select the Create Self Signed Certificate link. 6

11 Creating a Self- Signed Certificate in IIS 4. The specify Friendly Name screen is displayed. In the Friendly Name field, type your name or a company name. 7

12 Creating a Self- Signed Certificate in IIS 5. Select OK. You should now have a new certificate listed for your IIS server. You can close the IIS Manager screen. 6. To enable SSL, select the web- site node on the left panel and select Bindings under Edit Site on the right panel. A list of all the bindings rules is displayed. 7. Select Add. 8. Select the Type https and Port 443 option from the list. 8

13 Creating a Self- Signed Certificate in IIS 9. Select OK. SSL is now enabled. 9

14

15 4 Configuring an ADFS 2.0 First Run To configure an ADFS 2.0 first run: 1. Select the Start menu > Administrative Tools > ADFS 2.0 Management. The ADFS Management console is displayed. 2. Select the AD FS 2.0 Federation Server Configuration Wizard link to begin the setup wizard. 3. Ensure the Create a new Federation Service radio button is selected and select Next. 11

16 Configuring an ADFS 2.0 First Run 4. Ensure the Stand- alone federation service radio button is selected and select Next. The Specify the Federation Service Name screen is dispalyed. 12

17 Configuring an ADFS 2.0 First Run Note: If you do not see a certificate listed you must create a self- signed certificate. See Creating a Self- Signed Certificate in IIS. 13

18 Configuring an ADFS 2.0 First Run 5. Select Next. The Specify a Service Account screen is displayed. 14

19 Configuring an ADFS 2.0 First Run 6. Select Browse. The Select User screen is displayed. Note: You must assign one of your computer accounts as a service account for ADFS. The exact account varies from customer to customer. If you are not sure what account to use, contact your system administrator. 7. Type the name of the service account in the Enter the object name to select field. 15

20 Configuring an ADFS 2.0 First Run 8. Select Check Names to validate the name. 9. When the account is validated, select OK. 10. In the Specify a Service Account screen in the Password field, type in a password for the service account. And select Next. 16

21 Configuring an ADFS 2.0 First Run 11. Review the Ready to Apply Settings, and select Next. Windows applies the settings. This process may take a few minutes. 17

22 Configuring an ADFS 2.0 First Run 18

23 Configuring an ADFS 2.0 First Run 12. Review the final settings, and if needed, fix any problems that may have occured. Important: These errors may require assistance from your system administrator. WebEx support is not able to help with errors at this stage. 13. When you have completed the fixes, select Close. 19

24

25 5 Exporting a Token Signing Certificate To export a token signing certificate: 1. Select the Start menu > Administrative Tools > ADFS 2.0 Management. The ADFS Management console is displayed. 2. Select and expand the Service tree and select Certificates. In the center window listed under Certificates find your Token- signing certificate. 3. Right click on the Token- signing certificate and select View Certificate from the pop- up. The certificate is displayed. 21

26 Exporting a Token Signing Certificate 4. Select the Details tab. 5. Select Copy to File. 22

27 Exporting a Token Signing Certificate 6. Ensure the DER encoded Binary X.509 (.CER) radio button is selected and select Next. 23

28 Exporting a Token Signing Certificate 7. Choose a path and file name to store the certificate as, and select Next. 24

29 Exporting a Token Signing Certificate 8. Select Finish. 25

30 Exporting a Token Signing Certificate 9. Select OK to confirm the operation is completed. 26

31 6 Configuring WebEx Centers This chapter details the tasks you need to complete to set up your WebEx site for ADFS 2.0 including: Installing the token- signing certificate Selecting the correct Single Sign- On (SSO) version Setting up the service provider initiated SSO in the SSO profile Setting up the service provider ID Setting up the issuer ID Setting up the SSO sign- in URL Setting up the name ID format Setting up the AuthnContextClassRef value Saving the WebEx configuration Exporting the WebEx Metadata.xml file To install the token- signing certificate: 1. Sign- in to the Cisco WebEx Site Administration Tool. 2. On the left navigational menu, select the SSO Configuration link. 3. Select the Site Certificate Manager link. 27

32 Configuring WebEx Centers 4. In the Site Certificate Manager screen, select Browse to select the token- signing certificate. 5. Browse to the required certificate and select Open. 28

33 Configuring WebEx Centers 6. Select OK to load the certificate to WebEx. 29

34 Configuring WebEx Centers 7. Select Close. 30

35 Configuring WebEx Centers To select the correct SSO version: 1. Sign- in to Cisco WebEx Site Administration. 2. On the left navigational menu, select the SSO Configuration link. 3. The default SSO value of SAML 1.1 is displayed on the right of the page. 4. Select SAML 2.0 from the list. 31

36 Configuring WebEx Centers 5. The default SAML 2.0 configuration screen for WebEx is displayed. 32

37 Configuring WebEx Centers To setup the Service Provider initiated SSO in the SSO Profile: In the SAML 2.0 configuration screen for WebEx, ensure the SP Initiated option is selected. Do NOT check the AuthnRequest Signed checkbox. To setup the Service Provider ID: The default value for the SP ID is This value is pre- populated and can remain at the default. Important: There may be a possible conflict with Cisco WebEx Messenger / Cisco Jabber. Unfortunately Cisco WebEx Messenger and Cisco Jabber both have the same default value for SP ID. If you are using both services with SSO, one of these values needs to change. In the below section it is recommended to change the value for WebEx Messenger, keeping the default for WebEx Centers. To setup the correct issuer ID: 1. Launch the ADFS 2.0 Management console. 2. On right- hand side of the main ADFS Management console screen under Actions, select Edit Federation Server Properties. The Federation Server Properties screen is displayed. 33

38 Configuring WebEx Centers 3. Copy the value displayed in the Federation Service Identifier field. 34

39 Configuring WebEx Centers 4. Paste the Federation Service Identifier into the WebEx field Issuer for SAML (IdP ID). 35

40 Configuring WebEx Centers To setup the SSO sign- in URL: 1. First you need to create the endpoint URL, which needs to be pieced together from ADFS and IIS. The endpoint URL is where WebEx directs users to sign- in. This value is different from customer to customer. The format of the URL is Name}/{path of endpoint}/. Important: The instructions provided below are a best effort to assist you in putting the endpoint URL together. If you are not sure of this value, or if the provided instructions do not match up in your environment, contact your system administrator. 2. Launch the ADFS 2.0 Management console. 3. On right- hand side of the main ADFS Management console screen under Actions, select Edit Federation Server Properties. The Federation Server Properties screen is displayed. 36

41 Configuring WebEx Centers 4. Copy the value displayed in the Federation Service name field. This is our server name for the endpoint URL for example, adfs- fed- srv2.adfs.webexeagle.com /{path of endpoint}/. 37

42 Configuring WebEx Centers 5. Select OK or Cancel. 6. Launch the ADFS 2.0 Management console, open the Services Tree and select Endpoint. You now need to find the SAML 2.0/WS- Federation type. Copy the value listed under URL Path and add to the full end point URL. Using the previous example you should now have the following URL: adfs- fed- srv2.adfs.webexeagle.com /adfs/ls/ 38

43 Configuring WebEx Centers 7. Sign- in to Cisco WebEx Site Admininistratin and add this to the SSO Service Login URL field. 39

44 Configuring WebEx Centers. To setup the name ID format: The Name ID format should remain at the default value Unspecified. To setup the AuthnContextClassRef value: Currently WebEx sets the default value for AuthnContextClassRef to urn:oasis:names:tc:saml:2.0:ac:classes:passwordprotectedtransport. Delete this value and replace it with urn:federation:authentication:windows. 40

45 Configuring WebEx Centers Note: This value can change depending on your setup. Finding the value may require extra troubleshooting to determine. Listed below are the most common AuthnContextClassRef values. Windows Authentication is the most common value, and is used in this guide. If you are using a different authentication scheme you just need to ensure the values between your assertion and WebEx match exactly. If you continue to have issues with this value (WebEx error 13), you refer to the SAML Troubleshooting Guide, or contact technical support. Common AuthnContextClassRef values: AuthnContextClassRef Windows Authentication (Suggested) Value urn:federation:authentication:windows Kerberos Authentication urn:oasis:names:tc:saml:2.0:ac:classes:kerberos Password Authentication urn:oasis:names:tc:saml:2.0:ac:classes:password or urn:oasis:names:tc:saml:2.0:ac:classes:passwordprotectedtrans port 41

46 Configuring WebEx Centers AuthnContextClassRef Forms Authentication Value urn:oasis:names:tc:saml:2.0:ac:classes:password or urn:oasis:names:tc:saml:2.0:ac:classes:passwordprotectedtrans port To save the WebEx configuration: At this point you need to save/update the values for the Federated Web SSO Configuration page. Select Update. To export the WebEx Metadata.xml file: 1. In WebEx Site Administration, select Export and save the file to your desktop. 42

47 Configuring WebEx Centers 2. The screen below is displayed. Select Save File and OK. You may have to select the location to download the file. We suggest the desktop for ease of use. 43

48 Configuring WebEx Centers 44

49 7 Configuring WebEx Messenger This chapter details the tasks you need to complete to set up your WebEx Messenger service for ADFS 2.0 including: Installing the token- signing certificate Selecting the correct Single Sign- On (SSO) version Setting up the service provider initiated SSO in the SSO profile Setting up the service provider ID Setting up the issuer ID Setting up the SSO sign- in URL Setting up the name ID format Setting up the AuthnContextClassRef value Saving the WebEx configuration Exporting the WebEx Metadata.xml file To install the token- signing certificate: 1. Sign- in to Cisco WebEx Administraton. 2. On the left navigational menu, select the Security Settings link. 3. Select the Organization Certificate Manager link. 45

50 Configuring WebEx Messenger 4. In the Organization Certificate Manager screen, select Import New Certificate. 5. In the Alias field, type an alias for the certificate and select Browse to select it. 46

51 Configuring WebEx Messenger 6. Browse to the required certificate, and select Open. 7. Select Import. 47

52 Configuring WebEx Messenger 8. Ensure the certificate is correct, and select Close. 9. Ensure the new certificate is selected, and select Save. 48

53 Configuring WebEx Messenger To select the correct SSO version: 1. Sign- in to the Cisco WebEx Organization Administration Tool. 2. Select the Configuration tab. 3. On the left navigational menu, select Security Settings. 4. Select Federated Web SSO Configuration. 49

54 Configuring WebEx Messenger 5. The default SSO value of SAML 12.0 is displayed in the Federation Protocol field. You do not need to make any changes. 50

55 Configuring WebEx Messenger To setup the Service Provider initiated SSO in the SSO Profile: In the Federated Web SSO Configuration screen, ensure the SP Initiated option is selected. Do NOT check the AuthnRequest Signed checkbox. 51

56 Configuring WebEx Messenger To setup the Service Provider ID: The default value for the SP ID is This value is pre- populated but must be changed to or to avoid a potential conflict with WebEx Centers. 52

57 Configuring WebEx Messenger To setup the correct issuer ID: 1. Launch the ADFS 2.0 Management console. 2. On right- hand side of the main ADFS Management console screen under Actions, select Edit Federation Server Properties. The Federation Server Properties screen is displayed. 3. Copy the value displayed in the Federation Service Identifier field. 53

58 Configuring WebEx Messenger 4. Paste the Federation Service Identifier into the WebEx field Issuer for SAML (IdP ID). 54

59 Configuring WebEx Messenger To setup the SSO sign- in URL: 1. First you need to create the endpoint URL, which needs to be pieced together from ADFS and IIS. The endpoint URL is where WebEx directs users to sign- in. This value is different from customer to customer. The format of the URL is Name}/{path of endpoint}/. Important: The instructions provided below are a best effort to assist you in putting this together. If you are not sure of this value, or if the provided instructions do not match up in your environment, contact your system administrator. 55

60 Configuring WebEx Messenger 2. Launch the ADFS 2.0 Management console. 3. On right- hand side of the main ADFS Management console screen under Actions, select Edit Federation Server Properties. The Federation Server Properties screen is displayed. 4. On right- hand side of the main ADFS Management console screen under Actions, select Edit Federation Server Properties. The Federation Server Properties screen is displayed. 5. Copy the value displayed in the Federation Service name field. This is our server name for the endpoint URL for example, adfs- fed- srv2.adfs.webexeagle.com /{path of endpoint}/. 6. Select OK or Cancel. 7. Launch the ADFS 2.0 Management console, open the Services Tree and select Endpoint. You now need to find the SAML 2.0/WS- Federation type. Copy the value listed under URL Path and add to the full end point URL. Using the previous example you should now have the following URL: adfs- fed- srv2.adfs.webexeagle.com /adfs/ls/ 56

61 Configuring WebEx Messenger 8. Sign- in to the Cisco WebEx Admininistraton Tool and add this to the Customer SSO Service Login URL field. 57

62 Configuring WebEx Messenger. To setup the name ID format: The Name ID format should remain at the default value Unspecified. To setup the AuthnContextClassRef value: 58 Please refer to the To setup the AuthnContextClassRef value section in Configuring WebEx Centers for this procedure.

63 Configuring WebEx Messenger To save the WebEx configuration: At this point you need to save/update the values for the Federated Web SSO Configuration screen. Select Save. To export the WebEx Metadata.xml file: 1. In the Cisco WebEx Administration Tool in the Federated Web SSO Configuration screen, select Export and save the file to your desktop. 59

64 Configuring WebEx Messenger 2. The screen below is displayed. Select Save File and OK. 60

65 Configuring WebEx Messenger 3. You may have to select the location to download the file. We suggest the desktop for ease of use. 61

66 Configuring WebEx Messenger 62

67 8 Configuring ADFS 2.0 for a Relay Party Trust To configure ADFS 2.0 for a relay party trust: 1. Launch the ADFS 2.0 Management console. 2. Select Required: Add a trusted relying party. 63

68 Configuring ADFS 2.0 for a Relay Party Trust 3. The Add Relying Party Trust Wizard is displayed. Read the information provided, and select Start. 64

69 Configuring ADFS 2.0 for a Relay Party Trust 4. In the Select Data Source screen, select Import data about the relying party from a file, and then select Browse. 65

70 Configuring ADFS 2.0 for a Relay Party Trust 5. Browse to the location where you previously saved the WebEx Metadata file, and select Open. 66

71 Configuring ADFS 2.0 for a Relay Party Trust 6. Verify the file location path is correct, and select Next. 67

72 Configuring ADFS 2.0 for a Relay Party Trust 7. In the Specify Display Name screen in the Display name field, enter a name for the relying party. For example, WebEx_SP. 8. In the Notes field, enter a description for the relying party. We recommend you fill out both the Display name and the Notes fields. 68

73 Configuring ADFS 2.0 for a Relay Party Trust 9. Select Next. 10. In the Choose Issuance Authorization Rules screen, select Permit all users to access this relying party, and then select Next. 69

74 Configuring ADFS 2.0 for a Relay Party Trust 11. In the Ready to Add Trust screen, review all of the data. No changes should be necessary. 70

75 Configuring ADFS 2.0 for a Relay Party Trust 12. Select Next. 13. In the Finish screen, ensure Open the edit claim rules dialog for this relying party trust when the wizard closes is selected, and then select Close. 71

76 Configuring ADFS 2.0 for a Relay Party Trust 72

77 9 Edit Claim Rules for Login To edit the claim rules for login: 1. Launch the ADFS 2.0 Management console. 2. Expand the Trust Relationships folder. 3. Select the Relying Party Trusts folder. The WebEx_SP Relying Party Trust should be displayed. 4. Under Actions > WebEx_SP, select Edit Claim Rules. 73

78 Edit Claim Rules for Login 5. In the Edit Claim Rules for WebEx_SP screen, select Add Rule. 74

79 Edit Claim Rules for Login 6. In the Select Rule Template screen, ensure the Claim rule template is set to Send LDAP Attributes as Claims, and then select Next. 75

80 Edit Claim Rules for Login 7. In the Configure Rule screen in the Claim rule name field, enter Name ID Mapping. 76

81 Edit Claim Rules for Login 8. From the Attribute store list, select Active Directory. 77

82 Edit Claim Rules for Login 9. Under Mapping of LDAP attributes to outgoing claim types: there are two labeled columns. Select the drop down arrow for LDAP Attribute. 10. From the list, select either E- Mail- Addresses or SAM- Account- Name. Important: The option you choose here depends on the username field from your WebEx site. If you have existing accounts on the WebEx site, you must ensure this value maps a matching value between your active directory and the username field. For example, if the username on your WebEx site is klewis, choose the SAM- Account- Name which takes the same format. If your username is kingsley.lewis@cisco.com, then choose E- Mail- Addresses. 78

83 Edit Claim Rules for Login 11. Select the drop down arrow for Outgoing Claim Type. 12. From the list, select Name ID. 79

84 Edit Claim Rules for Login 13. Review the settings, and then select Finish. 80

85 Edit Claim Rules for Login You have now completed the first steps of setting up ADFS 2.0. If you have existing user accounts on your site, you can now test to verify authentication. Resolve any problems at this point before moving on to Auto Account Creation. If you do not have any user accounts, or are using a new format for username then you can move on to Auto Account Creation. If you do not plan on using Auto Account Creation, then congratulations you have completed setting up ADFS Select OK to close the window. 81

86 Edit Claim Rules for Login. 82

87 10 Setup Auto Account Creation Auto account creation is used to generate accounts on the WebEx site, helping reduce the need for administration and user management. To editing claims for auto account creation: 1. Launch the ADFS 2.0 Management console. 2. Expand the Trust Relationships folder. 3. Select Rely Party Trusts. WebEx_SP should be displayed. 4. Under Actions > WebEx_SP, select Edit Claim Rules. 83

88 Setup Auto Account Creation 5. In the Edit Claim Rules for WebEx_SP screen, select Add Rule. 84

89 Setup Auto Account Creation 6. In the Select Rule Template screen, select Send LDAP Attributes as Claims from the list select Next. 85

90 Setup Auto Account Creation 7. In the Configure Rule screen in the Claim rule name field, enter AutoAccountCreate. 86

91 Setup Auto Account Creation 8. From the Attribute store list, select Active Directory. 87

92 Setup Auto Account Creation 9. Under Mapping of LDAP attributes to outgoing claim types: there are two labeled columns. The first is LDAP Attribute, and the second is Outgoing Claim Type. You must add four rows filling out both of these columns. For basic auto account creation WebEx requires the four following outgoing claim types; uid, , firstname, and lastname. 10. From the LDAP Attributes list, select E- Mail- Addresses. Other acceptable options are SAM- Account- Name, or User- Principal- Name. The option you must be the exact same as the one selected for NameID in step

93 Setup Auto Account Creation 11. In the Outgoing Claim Type field, type uid. Tip: DO NOT CLICK on the list arrow; you must type this in manually. A triple click in the field enables you to start typing.. 89

94 Setup Auto Account Creation 12. In the second row from the LDAP Attributes list, select E- Mail- Addresses. 13. In the Outgoing Claim Type field, type . DO NOT CLICK on the list arrow; you must type this in manually. 14. In the third row from the LDAP Attributes list, select Given- Name. 15. In the Outgoing Claim Type field, type firstname. DO NOT CLICK on the list arrow; you must type this in manually. 16. In the fourth row from the LDAP Attributes list, select Surname. 17. In the Outgoing Claim Type field, type lastname. DO NOT CLICK on the list arrow; you must type this in manually. 18. In the LDAP Attribute field, type whenchanged. DO NOT CLICK on the list arrow; you must type this in manually. 19. In the Outgoing Claim Type field, type updatetimestamp. DO NOT CLICK on the list arrow; you must type this in manually. 90

95 Setup Auto Account Creation 20. When complete, select Finish. 21. There are now two claim rules listed in the Edit Claim Rules for WebEx_SP screen. 91

96 Setup Auto Account Creation To configure WebEx for auto account update: 1. Sign- in to your Cisco WebEx Administration Tool or your Cisco WebEx Messenger Administration Tool. 2. Select SSO Configuration. 3. Select Auto Account Update. 92

97 Setup Auto Account Creation 4. Select Update to save the values. 93

98 Setup Auto Account Creation 94

99 11 Setup Auto Account Update To edit claims for auto account update: 1. Launch the ADFS 2.0 Management console. 2. Expand the Trust Relationships folder. The WebEx_SP Relying Party Trust should be displayed. 3. Under Actions > WebEx_SP, select Edit Claim Rules.. 95

100 Setup Auto Account Update 4. In the Edit Claim Rules for WebEx_SP screen, select Add Rule. 96

101 Setup Auto Account Update 5. The Add Transform Claim Rule Wizard is displayed. 6. From the Claim rule template list, select Send Claims Using a Custom Rule, and then select Next. 97

102 Setup Auto Account Update 7. Read the Notes about the claim rule template description, and then select Next. 98

103 Setup Auto Account Update 8. In the Claim rule name field, enter AutoAccountUpdate. 9. In the Custom rule: text box, enter the following rule: c:[type == " ccountname", Issuer == "AD AUTHORITY"] => issue(store = "Active Directory", types = ("updatetimestamp"), query = ";whenchanged;{0}", param = c.value); 10. Select Finish. 99

104 Setup Auto Account Update 11. The AutoAccountUpdate is now listed under the Claims Rules for WebEx_SP. 100

105 Setup Auto Account Update To configure WebEx for auto account update: 1. Sign- in to your Cisco WebEx Administration Tool or your Cisco WebEx Messenger Administration Tool. 2. Select SSO Configuration. 3. Select Auto Account Update. 101

106 Setup Auto Account Update 4. Select Update to save the values. 102

107 Setup Auto Account Update 103

108

109 12 Testing the Connection in WebEx Centers To test the connection in WebEx Centers: 1. Open up a web browser and point to replacing sitename with your WebEx branded site. 2. Select Login on the right side of the screen. You should now be directed into your Cisco WebEx site, or you need to enter your network credentials in the login screen. 3. The Cisco WebEx site is displayed. 105

110 Testing the Connection in WebEx Centers 106

111 13 Testing the Connection in WebEx Messenger Cisco WebEx Messenger 7.0 and greater automatically recognizes that Single Sign- On (SSO) is turned on for your organization, and attempts to sign- in to your Active Directory. Some older versions of Cisco WebEx Messenger need to be installed with a switch to turn on SSO. Customers who would like to package and manually install Cisco WebEx Messenger across a network can also use this switch. Please refer to the Cisco WebEx Organization Administration documentation for additional details if you plan on using this method. Use the following example for installing the Cisco WebEx Messenger client: OR For a non- SSO msi installation - msiexec.exe /i apsetup.msi For a SSO msi installation - msiexec.exe /i apsetup.msi /SSO_ORG EXAMPLE.com Connect.exe (installation package) or apsetup.exe to install non- SSO Connect.exe (installation package) or apsetup.exe /SSO_ORG EXAMPLE.com to install SSO Note: Connect.exe installation package and Connect.exe run- time executable are two different files. To enable or disable the SSO Connect.exe (run time executable): Enabled - Connect.exe /SSO_ORG EXAMPLE.com 107

112 Testing the Connection in WebEx Messenger Disabled - Connect.exe /SSO_ORG NONE A second option for testing is to use the Cisco WebEx Messenger Web IM to test SSO. Replace {ORG} in with your Cisco WebEx Messenger organization. 108

113 Appendix Accepted attributes in the assertion for Meeting Center Attribute Name uid firstname lastname Required for Auto Account Creations NO YES YES YES Usage groupid NO Only support create, not update updatetimestamp NO, but it is necessary for Auto Account Update Support long value, UTC time format, & LDIF time format optionalparams NO optional parameters can be set in two formats as following: <saml:attribute NameFormat= urn:oasis:names:tc:saml:2.0:attrname- format:basic Name= optionalparams > <saml:attributevalue xsi:type= xs:string >City=Toronto</saml:AttributeValue > <saml:attributevalue xsi:type= xs:string >AA=OFF</saml:AttributeValue > </saml:attribute> or the same format as the mandatory attributes, don't need wrapped into optionalparams <saml:attribute NameFormat= urn:oasis:names:tc:saml:2.0:attrname- format:basic Name= City > <saml:attributevalue xsi:type= xs:string >Toronto</saml:AttributeValue> </saml:attribute> <saml:attribute NameFormat= urn:oasis:names:tc:saml:2.0:attrname- format:basic Name= AA > <saml:attributevalue xsi:type= xs:string >OFF</saml:AttributeValue> </saml:attribute> RP NO Support Record Editor LA NO LabAdmin Privilege 109

114 Appendix Attribute Name Required for Auto Account Creations Usage OPhoneCountry NO office phone country code OPhoneArea NO office phone area OPhoneLocal NO office phone local OPhoneExt NO office phone ext. FPhoneCountry NO Fax phone country code FPhoneArea NO Fax phone area FPhoneLocal NO Fax phone local FPhoneExt NO Fax phone ext. TimeZone NO TimeZone Address1 NO Address1 Address2 NO Address2 City, State, ZipCode,Country MW FL AB PF MM MR AA RC RE LB AS AC MT NO mywebex type SupportFileFolder SupportMyContacts SupportMyProfile SupportMyMeetings SupportEndUserReport SupportAccessAnywhere SupportMyRecordings SupportEventDocuments SupportPersonalLobby AdditionalStorageNumber AdditionalComputerNumber <1,2,3,...> Accepted attributes for Cisco WebEx Messenger Attribute Name Required for Auto Account Creations Usage uid NO If uid is missing, systems sets uid= firstname lastname YES YES YES 110

115 Attribute Name updatetimestamp Required for Auto Account Creations NO, but it is necessary for Auto Account Update Usage Support long value, UTC time format, & LDIF time format optionalparams NO optional parameters can be set in two formats as following: <saml:attribute NameFormat= urn:oasis:names:tc:saml:2.0:attrname- format:basic Name= optionalparams > <saml:attributevalue xsi:type= xs:string >City=Toronto</saml:AttributeValue > <saml:attributevalue xsi:type= xs:string >AA=OFF</saml:AttributeValue > </saml:attribute> or the same format as the mandatory attributes, don't need wrapped into optionalparams <saml:attribute NameFormat= urn:oasis:names:tc:saml:2.0:attrname- format:basic Name= City > <saml:attributevalue xsi:type= xs:string >Toronto</saml:AttributeValue> </saml:attribute> <saml:attribute NameFormat= urn:oasis:names:tc:saml:2.0:attrname- format:basic Name= AA > <saml:attributevalue xsi:type= xs:string >OFF</saml:AttributeValue> </saml:attribute> employeeid NO need be unique for an org groupid NO Only support auto account creation displayname companyname streetline1 streetline2 city state zipcode NO NO NO NO NO NO NO country NO Need to be an ISO country code jobtitle mobilephone businessphone businessfax NO NO NO NO 111

116 Appendix Attribute Name optionalparams Required for Auto Account Creations NO Usage imloggingenabled NO When an org has IMLogging enabled, if no such attribute, it would set to false. imloggingendpointn ame NO If the value is null when imloggingenabled is true, will use default endpoint set in administrator portal upgradesite NO Only support auto account update 112

117 Index No index entries found. 113

Single Sign-on. Overview. Using SSO with the Cisco WebEx and Cisco WebEx Meeting. Overview, page 1

Single Sign-on. Overview. Using SSO with the Cisco WebEx and Cisco WebEx Meeting. Overview, page 1 Overview, page 1 Using SSO with the Cisco WebEx and Cisco WebEx Meeting Applications, page 1 Requirements, page 2 Configuration of in Cisco WebEx Messenger Administration Tool, page 3 Sample Installation

More information

ADFS Integration Guidelines

ADFS Integration Guidelines ADFS Integration Guidelines Version 1.6 updated March 13 th 2014 Table of contents About This Guide 3 Requirements 3 Part 1 Configure Marcombox in the ADFS Environment 4 Part 2 Add Relying Party in ADFS

More information

CA Nimsoft Service Desk

CA Nimsoft Service Desk CA Nimsoft Service Desk Single Sign-On Configuration Guide 6.2.6 This Documentation, which includes embedded help systems and electronically distributed materials, (hereinafter referred to as the Documentation

More information

Configuring ADFS 3.0 to Communicate with WhosOnLocation SAML

Configuring ADFS 3.0 to Communicate with WhosOnLocation SAML Configuring ADFS 3.0 to Communicate with WhosOnLocation SAML --------------------------------------------------------------------------------------------------------------------------- Contents Overview...

More information

Microsoft Office 365 Using SAML Integration Guide

Microsoft Office 365 Using SAML Integration Guide Microsoft Office 365 Using SAML Integration Guide Revision A Copyright 2013 SafeNet, Inc. All rights reserved. All attempts have been made to make the information in this document complete and accurate.

More information

Egnyte Single Sign-On (SSO) Configuration for Active Directory Federation Services (ADFS)

Egnyte Single Sign-On (SSO) Configuration for Active Directory Federation Services (ADFS) w w w. e g n y t e. c o m Egnyte Single Sign-On (SSO) Configuration for Active Directory Federation Services (ADFS) To set up ADFS so that your employees can access Egnyte using their ADFS credentials,

More information

VMware Identity Manager Integration with Active Directory Federation Services 2.0

VMware Identity Manager Integration with Active Directory Federation Services 2.0 VMware Identity Manager Integration with Active Directory Federation Services 2.0 VMware Identity Manager J ULY 2015 V 2 Table of Contents Active Directory Federation Services... 2 Configuring AD FS Instance

More information

HOTPin Integration Guide: Salesforce SSO with Active Directory Federated Services

HOTPin Integration Guide: Salesforce SSO with Active Directory Federated Services 1 HOTPin Integration Guide: Salesforce SSO with Active Directory Federated Services Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is provided

More information

SalesForce SSO with Active Directory Federated Services (ADFS) v2.0 Authenticating Users Using SecurAccess Server by SecurEnvoy

SalesForce SSO with Active Directory Federated Services (ADFS) v2.0 Authenticating Users Using SecurAccess Server by SecurEnvoy SalesForce SSO with Active Directory Federated Services (ADFS) v2.0 Authenticating Users Using SecurAccess Server by SecurEnvoy Contact information SecurEnvoy www.securenvoy.com 0845 2600010 Merlin House

More information

Only LDAP-synchronized users can access SAML SSO-enabled web applications. Local end users and applications users cannot access them.

Only LDAP-synchronized users can access SAML SSO-enabled web applications. Local end users and applications users cannot access them. This chapter provides information about the Security Assertion Markup Language (SAML) Single Sign-On feature, which allows administrative users to access certain Cisco Unified Communications Manager and

More information

Enabling Single Sign- On for Common Identity using F5

Enabling Single Sign- On for Common Identity using F5 Enabling Single Sign- On for Common Identity using F5 THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. ALL STATEMENTS, INFORMATION, AND RECOMMENDATIONS

More information

Tenrox. Single Sign-On (SSO) Setup Guide. January, 2012. 2012 Tenrox. All rights reserved.

Tenrox. Single Sign-On (SSO) Setup Guide. January, 2012. 2012 Tenrox. All rights reserved. Tenrox Single Sign-On (SSO) Setup Guide January, 2012 2012 Tenrox. All rights reserved. About this Guide This guide provides a high-level technical overview of the Tenrox Single Sign-On (SSO) architecture,

More information

Step-by-Step guide for SSO from MS Sharepoint 2010 to SAP EP 7.0x

Step-by-Step guide for SSO from MS Sharepoint 2010 to SAP EP 7.0x Step-by-Step guide for SSO from MS Sharepoint 2010 to SAP EP 7.0x Sverview Trust between SharePoint 2010 and ADFS 2.0 Use article Federated Collaboration with Shibboleth 2.0 and SharePoint 2010 Technologies

More information

Fairsail. Implementer. Single Sign-On with Fairsail and Microsoft Active Directory Federation Services 2.0. Version 1.92 FS-SSO-XXX-IG-201406--R001.

Fairsail. Implementer. Single Sign-On with Fairsail and Microsoft Active Directory Federation Services 2.0. Version 1.92 FS-SSO-XXX-IG-201406--R001. Fairsail Implementer Microsoft Active Directory Federation Services 2.0 Version 1.92 FS-SSO-XXX-IG-201406--R001.92 Fairsail 2014. All rights reserved. This document contains information proprietary to

More information

Configuring Active Directory with AD FS and SAML for Brainloop Secure Dataroom Setup Guide

Configuring Active Directory with AD FS and SAML for Brainloop Secure Dataroom Setup Guide Configuring Active Directory with AD FS and SAML for Brainloop Secure Dataroom Copyright Brainloop AG, 2004-2015. All rights reserved. Document version 1.0 All trademarks referred to in this document are

More information

NSi Mobile Installation Guide. Version 6.2

NSi Mobile Installation Guide. Version 6.2 NSi Mobile Installation Guide Version 6.2 Revision History Version Date 1.0 October 2, 2012 2.0 September 18, 2013 2 CONTENTS TABLE OF CONTENTS PREFACE... 5 Purpose of this Document... 5 Version Compatibility...

More information

T his feature is add-on service available to Enterprise accounts.

T his feature is add-on service available to Enterprise accounts. SAML Single Sign-On T his feature is add-on service available to Enterprise accounts. Are you already using an Identity Provider (IdP) to manage logins and access to the various systems your users need

More information

Managing Identities and Admin Access

Managing Identities and Admin Access CHAPTER 4 This chapter describes how Cisco Identity Services Engine (ISE) manages its network identities and access to its resources using role-based access control policies, permissions, and settings.

More information

HOTPin Integration Guide: Google Apps with Active Directory Federated Services

HOTPin Integration Guide: Google Apps with Active Directory Federated Services HOTPin Integration Guide: Google Apps with Active Directory Federated Services Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is provided 'as

More information

An overview of configuring WebEx for single sign-on. To configure the WebEx application for single-sign on from the cloud service (an overview)

An overview of configuring WebEx for single sign-on. To configure the WebEx application for single-sign on from the cloud service (an overview) Chapter 83 WebEx This chapter includes the following sections: An overview of configuring WebEx for single sign-on Configuring WebEx for SSO Configuring WebEx in Cloud Manager For more information about

More information

Site Administration. User s Guide

Site Administration. User s Guide Site Administration User s Guide Copyright 1997-2010. Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco WebEx logo are trademarks or registered

More information

RoomWizard Synchronization Software Manual Installation Instructions

RoomWizard Synchronization Software Manual Installation Instructions 2 RoomWizard Synchronization Software Manual Installation Instructions Table of Contents Exchange Server Configuration... 4 RoomWizard Synchronization Software Installation and Configuration... 5 System

More information

Configuring Single Sign-On from the VMware Identity Manager Service to Office 365

Configuring Single Sign-On from the VMware Identity Manager Service to Office 365 Configuring Single Sign-On from the VMware Identity Manager Service to Office 365 VMware Identity Manager JULY 2015 V1 Table of Contents Overview... 2 Passive and Active Authentication Profiles... 2 Adding

More information

Exchange 2010. Outlook Profile/POP/IMAP/SMTP Setup Guide

Exchange 2010. Outlook Profile/POP/IMAP/SMTP Setup Guide Exchange 2010 Outlook Profile/POP/IMAP/SMTP Setup Guide September, 2013 Exchange 2010 Outlook Profile/POP/IMAP/SMTP Setup Guide i Contents Exchange 2010 Outlook Profile Configuration... 1 Outlook Profile

More information

Security Assertion Markup Language (SAML) Site Manager Setup

Security Assertion Markup Language (SAML) Site Manager Setup Security Assertion Markup Language (SAML) Site Manager Setup Trademark Notice Blackboard, the Blackboard logos, and the unique trade dress of Blackboard are the trademarks, service marks, trade dress and

More information

WebEx Meeting Center User Guide

WebEx Meeting Center User Guide WebEx Meeting Center User Guide For Hosts, Presenters, and Participants 8.17 Copyright 1997 2010 Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco

More information

Introduction to Directory Services

Introduction to Directory Services Introduction to Directory Services Overview This document explains how AirWatch integrates with your organization's existing directory service such as Active Directory, Lotus Domino and Novell e-directory

More information

HELIX MEDIA LIBRARY INSTALL GUIDE FOR WINDOWS SERVER 2003 Helix Media Library Version 1.1. Revision Date: July 2011

HELIX MEDIA LIBRARY INSTALL GUIDE FOR WINDOWS SERVER 2003 Helix Media Library Version 1.1. Revision Date: July 2011 HELIX MEDIA LIBRARY INSTALL GUIDE FOR WINDOWS SERVER 2003 Helix Media Library Version 1.1 Revision Date: July 2011 Summary of Contents Summary of Contents... 2 Pre Installation Checklist... 4 Prerequisites...

More information

Cisco WebEx Node Management System. Administrator s Guide

Cisco WebEx Node Management System. Administrator s Guide Cisco WebEx Node Management System Administrator s Guide Copyright 1997 2011 Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco WebEx logo are trademarks

More information

VMware Identity Manager Administration

VMware Identity Manager Administration VMware Identity Manager Administration VMware Identity Manager 2.4 This document supports the version of each product listed and supports all subsequent versions until the document is replaced by a new

More information

AvePoint Meetings 3.2.2 for SharePoint On-Premises. Installation and Configuration Guide

AvePoint Meetings 3.2.2 for SharePoint On-Premises. Installation and Configuration Guide AvePoint Meetings 3.2.2 for SharePoint On-Premises Installation and Configuration Guide Issued August 2015 Table of Contents About AvePoint Meetings for SharePoint... 4 System Requirements... 5 2 System

More information

WebEx Integration to Outlook. User Guide

WebEx Integration to Outlook. User Guide WebEx Integration to Outlook User Guide 072310 Copyright 1997 2010 Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco WebEx logo are trademarks or

More information

Defender 5.7 - Token Deployment System Quick Start Guide

Defender 5.7 - Token Deployment System Quick Start Guide Defender 5.7 - Token Deployment System Quick Start Guide This guide describes how to install, configure and use the Defender Token Deployment System, based on default settings and how to self register

More information

etoken Enterprise For: SSL SSL with etoken

etoken Enterprise For: SSL SSL with etoken etoken Enterprise For: SSL SSL with etoken System Requirements Windows 2000 Internet Explorer 5.0 and above Netscape 4.6 and above etoken R2 or Pro key Install etoken RTE Certificates from: (click on the

More information

Integrating VMware Horizon Workspace and VMware Horizon View TECHNICAL WHITE PAPER

Integrating VMware Horizon Workspace and VMware Horizon View TECHNICAL WHITE PAPER Integrating VMware Horizon Workspace and VMware Horizon View TECHNICAL WHITE PAPER Table of Contents Introduction.... 3 Requirements.... 3 Horizon Workspace Components.... 3 SAML 2.0 Standard.... 3 Authentication

More information

Initial Setup of Microsoft Outlook 2011 with IMAP for OS X Lion

Initial Setup of Microsoft Outlook 2011 with IMAP for OS X Lion Initial Setup of Microsoft Outlook Concept This document describes the procedures for setting up the Microsoft Outlook email client to download messages from Google Mail using Internet Message Access Protocol

More information

Egnyte Single Sign-On (SSO) Installation for Okta

Egnyte Single Sign-On (SSO) Installation for Okta w w w. e g n y t e. c o m Egnyte Single Sign-On (SSO) Installation for Okta To set up Egnyte so employees can log in using SSO, follow the steps below to configure Okta and Egnyte to work with each other.

More information

SAML 2.0 Configurations at SAP NetWeaver AS ABAP and Microsoft ADFS

SAML 2.0 Configurations at SAP NetWeaver AS ABAP and Microsoft ADFS SAML 2.0 Configurations at SAP NetWeaver AS ABAP and Microsoft ADFS Applies to: SAP Gateway 2.0 Summary This guide describes how you install and configure SAML 2.0 on Microsoft ADFS server and SAP NetWeaver

More information

Dell One Identity Cloud Access Manager 8.0.1 - How to Configure for SSO to SAP NetWeaver using SAML 2.0

Dell One Identity Cloud Access Manager 8.0.1 - How to Configure for SSO to SAP NetWeaver using SAML 2.0 Dell One Identity Cloud Access Manager 8.0.1 - How to Configure for SSO to SAP NetWeaver using SAML 2.0 May 2015 About this guide Prerequisites and requirements NetWeaver configuration Legal notices About

More information

Lifesize Cloud Table of Contents

Lifesize Cloud Table of Contents Table of Contents Let's get started Call someone Add a contact Invite someone to call you Send an invitation from Google Calendar Send an invitation from Microsoft Outlook Call without a Cloud account

More information

IT Administrator Guide for Mass Deployment of WebEx Productivity Tools

IT Administrator Guide for Mass Deployment of WebEx Productivity Tools IT Administrator Guide for Mass Deployment of WebEx Productivity Tools Version 2.0 COPYRIGHT 1997-2010 Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the

More information

QUANTIFY INSTALLATION GUIDE

QUANTIFY INSTALLATION GUIDE QUANTIFY INSTALLATION GUIDE Thank you for putting your trust in Avontus! This guide reviews the process of installing Quantify software. For Quantify system requirement information, please refer to the

More information

Cisco WebEx Meeting Center on the iphone

Cisco WebEx Meeting Center on the iphone Cisco WebEx Meeting Center on the iphone Quick Start Guide Version 2 Copyright 1997 2010 Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco WebEx

More information

How To Enable A Websphere To Communicate With Ssl On An Ipad From Aaya One X Portal 1.1.3 On A Pc Or Macbook Or Ipad (For Acedo) On A Network With A Password Protected (

How To Enable A Websphere To Communicate With Ssl On An Ipad From Aaya One X Portal 1.1.3 On A Pc Or Macbook Or Ipad (For Acedo) On A Network With A Password Protected ( Avaya one X Portal 1.1.3 Lightweight Directory Access Protocol (LDAP) over Secure Socket Layer (SSL) Configuration This document provides configuration steps for Avaya one X Portal s 1.1.3 communication

More information

Flexible Identity Federation

Flexible Identity Federation Flexible Identity Federation Administration guide version 1.0.1 Publication history Date Description Revision 2015.09.24 initial release 1.0.0 2015.12.11 minor updates 1.0.1 Copyright Orange Business Services

More information

ACTIVID APPLIANCE AND MICROSOFT AD FS

ACTIVID APPLIANCE AND MICROSOFT AD FS ACTIVID APPLIANCE AND MICROSOFT AD FS SAML 2.0 Channel Integration Handbook ActivID Appliance 7.2 July 2013 Released Document Version 1.0 hidglobal.com Table of Contents 1.0 Introduction...3 1.1 Scope

More information

Entrust Managed Services PKI. Configuring secure LDAP with Domain Controller digital certificates

Entrust Managed Services PKI. Configuring secure LDAP with Domain Controller digital certificates Entrust Managed Services Entrust Managed Services PKI Configuring secure LDAP with Domain Controller digital certificates Document issue: 1.0 Date of issue: October 2009 Copyright 2009 Entrust. All rights

More information

Configuring Single Sign-on from the VMware Identity Manager Service to AirWatch Applications

Configuring Single Sign-on from the VMware Identity Manager Service to AirWatch Applications Configuring Single Sign-on from the VMware Identity Manager Service to AirWatch Applications VMware Identity Manager AUGUST 2015 V1 Configuring Single Sign-On from VMware Identity Manager to AirWatch Applications

More information

Email Client configuration and migration Guide Setting up Thunderbird 3.1

Email Client configuration and migration Guide Setting up Thunderbird 3.1 Email Client configuration and migration Guide Setting up Thunderbird 3.1 1. Open Mozilla Thunderbird. : 1. On the Edit menu, click Account Settings. 2. On the Account Settings page, under Account Actions,

More information

App Orchestration 2.5

App Orchestration 2.5 Configuring NetScaler 10.5 Load Balancing with StoreFront 2.5.2 and NetScaler Gateway for Prepared by: James Richards Last Updated: August 20, 2014 Contents Introduction... 3 Configure the NetScaler load

More information

An overview of configuring WebEx for single sign-on. To configure the WebEx application for single-sign on from the cloud service (an overview)

An overview of configuring WebEx for single sign-on. To configure the WebEx application for single-sign on from the cloud service (an overview) Chapter 190 WebEx This chapter includes the following sections: "An overview of configuring WebEx for single sign-on" on page 190-1600 "Configuring WebEx for SSO" on page 190-1601 "Configuring WebEx in

More information

Using SAML for Single Sign-On in the SOA Software Platform

Using SAML for Single Sign-On in the SOA Software Platform Using SAML for Single Sign-On in the SOA Software Platform SOA Software Community Manager: Using SAML on the Platform 1 Policy Manager / Community Manager Using SAML for Single Sign-On in the SOA Software

More information

WebEx Meeting Center User Guide

WebEx Meeting Center User Guide WebEx Meeting Center User Guide For Hosts, Presenters, and Attendees 8.17 Copyright 1997 2010 Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco

More information

McAfee Cloud Identity Manager

McAfee Cloud Identity Manager SAML2 Cloud Connector Guide McAfee Cloud Identity Manager version 1.2 or later COPYRIGHT Copyright 2013 McAfee, Inc. All Rights Reserved. No part of this publication may be reproduced, transmitted, transcribed,

More information

How To Install Ctera Agent On A Pc Or Macbook With Acedo (Windows) On A Macbook Or Macintosh (Windows Xp) On An Ubuntu 7.5.2 (Windows 7) On Pc Or Ipad

How To Install Ctera Agent On A Pc Or Macbook With Acedo (Windows) On A Macbook Or Macintosh (Windows Xp) On An Ubuntu 7.5.2 (Windows 7) On Pc Or Ipad Deploying CTERA Agent via Microsoft Active Directory and Single Sign On Cloud Attached Storage September 2015 Version 5.0 Copyright 2009-2015 CTERA Networks Ltd. All rights reserved. No part of this document

More information

Sage HRMS 2014 Sage Employee Self Service Tech Installation Guide for Windows 2003, 2008, and 2012. October 2013

Sage HRMS 2014 Sage Employee Self Service Tech Installation Guide for Windows 2003, 2008, and 2012. October 2013 Sage HRMS 2014 Sage Employee Self Service Tech Installation Guide for Windows 2003, 2008, and 2012 October 2013 This is a publication of Sage Software, Inc. Document version: October 17, 2013 Copyright

More information

McAfee Cloud Single Sign On

McAfee Cloud Single Sign On Setup Guide Revision B McAfee Cloud Single Sign On COPYRIGHT Copyright 2013 McAfee, Inc. Do not copy without permission. TRADEMARK ATTRIBUTIONS McAfee, the McAfee logo, McAfee Active Protection, McAfee

More information

Single Sign On for ShareFile with NetScaler. Deployment Guide

Single Sign On for ShareFile with NetScaler. Deployment Guide Single Sign On for ShareFile with NetScaler Deployment Guide This deployment guide focuses on defining the process for enabling Single Sign On into Citrix ShareFile with Citrix NetScaler. Table of Contents

More information

Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide

Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide Notes, Cautions, and Warnings NOTE: A NOTE indicates important information that helps you make better use of your computer.

More information

Cisco WebEx Connect Administrator s Guide

Cisco WebEx Connect Administrator s Guide For more information: In the U.S.: 800.374.2441 www.intercall.com info@intercall.com In Canada: 877.333.2666 www.intercall.ca Cisco WebEx Connect Administrator s Guide 2009. WebEx Communications, Inc.

More information

Wavecrest Certificate

Wavecrest Certificate Wavecrest InstallationGuide Wavecrest Certificate www.wavecrest.net Copyright Copyright 1996-2015, Wavecrest Computing, Inc. All rights reserved. Use of this product and this manual is subject to license.

More information

AWS Management Portal for vcenter. User Guide

AWS Management Portal for vcenter. User Guide AWS Management Portal for vcenter User Guide AWS Management Portal for vcenter: User Guide Copyright 2015 Amazon Web Services, Inc. and/or its affiliates. All rights reserved. Amazon's trademarks and trade

More information

WatchDox Administrator's Guide. Application Version 3.7.5

WatchDox Administrator's Guide. Application Version 3.7.5 Application Version 3.7.5 Confidentiality This document contains confidential material that is proprietary WatchDox. The information and ideas herein may not be disclosed to any unauthorized individuals

More information

Millennium Drive. Installation Guide

Millennium Drive. Installation Guide Millennium Drive Installation Guide This is a publication of Abila, Inc. Version 2015.1 2015 Abila, Inc. and its affiliated entities. All rights reserved. Abila, the Abila logos, and the Abila product

More information

EVault Endpoint Protection 7.0 Single Sign-On Configuration

EVault Endpoint Protection 7.0 Single Sign-On Configuration Revision: This manual has been provided for Version 7.0 (July 2014). Software Version: 7.0 2014 EVault Inc. EVault, A Seagate Company, makes no representations or warranties with respect to the contents

More information

This section includes troubleshooting topics about single sign-on (SSO) issues.

This section includes troubleshooting topics about single sign-on (SSO) issues. This section includes troubleshooting topics about single sign-on (SSO) issues. SSO Fails After Completing Disaster Recovery Operation, page 1 SSO Protocol Error, page 1 SSO Redirection Has Failed, page

More information

SETUP SSL IN SHAREPOINT 2013 (USING SELF-SIGNED CERTIFICATE)

SETUP SSL IN SHAREPOINT 2013 (USING SELF-SIGNED CERTIFICATE) 12/15/2012 WALISYSTEMSINC.COM SETUP SSL IN SHAREPOINT 2013 (USING SELF-SIGNED CERTIFICATE) Setup SSL in SharePoint 2013 In the last article (link below), you learned how to setup SSL in SharePoint 2013

More information

WebSpy Vantage Ultimate 2.2 Web Module Administrators Guide

WebSpy Vantage Ultimate 2.2 Web Module Administrators Guide WebSpy Vantage Ultimate 2.2 Web Module Administrators Guide This document is intended to help you get started using WebSpy Vantage Ultimate and the Web Module. For more detailed information, please see

More information

Live@edu User Guide. Please visit the Helpdesk website for more information: http://www.smu.edu.sg/iits/helpdesk_support/index.asp

Live@edu User Guide. Please visit the Helpdesk website for more information: http://www.smu.edu.sg/iits/helpdesk_support/index.asp IITS Main Office SINGAPORE MANAGEMENT UNIVERSITY Administration Building, Level 11 81, Victoria Street Singapore 188065 Phone: 65-6828 1930 Email: iits@smu.edu.sg Please visit the Helpdesk website for

More information

Site Administration. User s Guide

Site Administration. User s Guide Site Administration User s Guide Copyright 1997-2008. WebEx Communications, Inc. All Rights Reserved. WEBEX and the WEBEX LOGO are trademarks or registered trademarks of WebEx Communications, Inc. in the

More information

Configure Single Sign on Between Domino and WPS

Configure Single Sign on Between Domino and WPS Configure Single Sign on Between Domino and WPS What we are doing here? Ok now we have the WPS server configured and running with Domino as the LDAP directory. Now we are going to configure Single Sign

More information

Cisco WebEx Training Center

Cisco WebEx Training Center Cisco WebEx Training Center User Guide Training Center 5.17 Copyright 1997 2010 Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco WebEx logo are

More information

PingFederate. IWA Integration Kit. User Guide. Version 3.0

PingFederate. IWA Integration Kit. User Guide. Version 3.0 PingFederate IWA Integration Kit Version 3.0 User Guide 2012 Ping Identity Corporation. All rights reserved. PingFederate IWA Integration Kit User Guide Version 3.0 April, 2012 Ping Identity Corporation

More information

SMART Vantage. Installation guide

SMART Vantage. Installation guide SMART Vantage Installation guide Product registration If you register your SMART product, we ll notify you of new features and software upgrades. Register online at smarttech.com/registration. Keep the

More information

Windows Live Mail Setup Guide

Windows Live Mail Setup Guide Versions Addressed: Windows Live Mail 2011 Document Updated: 11/24/2010 Copyright 2010 Purpose: This document will assist the end user in configuring Windows Live Mail to access a POP3 email account hosted

More information

Moving Email from Yahoo! Mail to AT&T Website Solutions

Moving Email from Yahoo! Mail to AT&T Website Solutions Issue 1 September, 2012 Moving Email Moving Email from Yahoo! Mail to AT&T Website Solutions With AT&T Website Solutions, you can check your email using your favorite email program such as Microsoft Outlook,

More information

Cloud Authentication. Getting Started Guide. Version 2.1.0.06

Cloud Authentication. Getting Started Guide. Version 2.1.0.06 Cloud Authentication Getting Started Guide Version 2.1.0.06 ii Copyright 2011 SafeNet, Inc. All rights reserved. All attempts have been made to make the information in this document complete and accurate.

More information

Set up Outlook for your new student e mail with IMAP/POP3 settings

Set up Outlook for your new student e mail with IMAP/POP3 settings Set up Outlook for your new student e mail with IMAP/POP3 settings 1. Open Outlook. The Account Settings dialog box will open the first time you open Outlook. If the Account Settings dialog box doesn't

More information

CONFIGURATION GUIDE WITH MICROSOFT ACTIVE DIRECTORY FEDERATION SERVER

CONFIGURATION GUIDE WITH MICROSOFT ACTIVE DIRECTORY FEDERATION SERVER UMANTIS CLOUD SSO CONFIGURATION GUIDE WITH MICROSOFT ACTIVE DIRECTORY FEDERATION SERVER THIS DOCUMENT DESCRIBES THE REQUIREMENTS TO SETUP A SINGLE SIGN ON (SSO) CONFIGURATION ON UMANTIS CLOUD BASED SOLUTIONS

More information

HOWTO: Installation of Microsoft Office SharePoint Server 2007

HOWTO: Installation of Microsoft Office SharePoint Server 2007 HOWTO: Installation of Microsoft Office SharePoint Server 2007 PREREQUISITES... 2 STEP -1: DO I NEED AN ACTIVE DIRECTORY... 2 STEP 0: INSTALL OS, INCLUDING ALL SERVICE PACKS AND PATCHES... 2 STEP 1: CREATE

More information

OneLogin Integration User Guide

OneLogin Integration User Guide OneLogin Integration User Guide Table of Contents OneLogin Account Setup... 2 Create Account with OneLogin... 2 Setup Application with OneLogin... 2 Setup Required in OneLogin: SSO and AD Connector...

More information

Email Client Configuration Guide

Email Client Configuration Guide Email Client Configuration Guide Table of Contents Email Configuration...3 Email settings...3 IMAP...3 POP...3 SMTP...3 Process Overview...5 Account set up wizards...5 Anatomy of an email address...5 Why

More information

Cisco WebEx Mail Administrator's Guide

Cisco WebEx Mail Administrator's Guide Cisco WebEx Mail Administrator's Guide Copyright 1997-2009 Cisco Systems, Inc. and/or its affiliated entities. All rights reserved. WEBEX, CISCO, Cisco WebEx, the CISCO logo, and the Cisco WebEx logo are

More information

CHARTER BUSINESS custom hosting faqs 2010 INTERNET. Q. How do I access my email? Q. How do I change or reset a password for an email account?

CHARTER BUSINESS custom hosting faqs 2010 INTERNET. Q. How do I access my email? Q. How do I change or reset a password for an email account? Contents Page Q. How do I access my email? Q. How do I change or reset a password for an email account? Q. How do I forward or redirect my messages to a different email address? Q. How do I set up an auto-reply

More information

Setup Guide Access Manager Appliance 3.2 SP3

Setup Guide Access Manager Appliance 3.2 SP3 Setup Guide Access Manager Appliance 3.2 SP3 August 2014 www.netiq.com/documentation Legal Notice THIS DOCUMENT AND THE SOFTWARE DESCRIBED IN THIS DOCUMENT ARE FURNISHED UNDER AND ARE SUBJECT TO THE TERMS

More information

Run Archive Server for MDaemon in HTTPS

Run Archive Server for MDaemon in HTTPS Archive Server for MDaemon Run Archive Server for MDaemon in HTTPS Introduction...2 Part 1 - Creating a Certificate Signing Request...3 Create a certificate request using IIS manager... 3 Part 2 - Creating

More information

IT Administrator Guide for Mass Deployment of WebEx Productivity Tools. Installation Guide for Administrators

IT Administrator Guide for Mass Deployment of WebEx Productivity Tools. Installation Guide for Administrators IT Administrator Guide for Mass Deployment of WebEx Productivity Tools Installation Guide for Administrators COPYRIGHT 1997-2015. Cisco and/or its affiliates. All rights reserved. WEBEX, CISCO, Cisco WebEx,

More information

SAP Cloud Identity Service Document Version: 1.0 2014-09-01. SAP Cloud Identity Service

SAP Cloud Identity Service Document Version: 1.0 2014-09-01. SAP Cloud Identity Service Document Version: 1.0 2014-09-01 Content 1....4 1.1 Release s....4 1.2 Product Overview....8 Product Details.... 9 Supported Browser Versions....10 Supported Languages....12 1.3 Getting Started....13 1.4

More information

User Manual. Onsight Management Suite Version 5.1. Another Innovation by Librestream

User Manual. Onsight Management Suite Version 5.1. Another Innovation by Librestream User Manual Onsight Management Suite Version 5.1 Another Innovation by Librestream Doc #: 400075-06 May 2012 Information in this document is subject to change without notice. Reproduction in any manner

More information

Move Your Email to AT&T Website Solutions

Move Your Email to AT&T Website Solutions September 2012 Move Your Email to AT&T Website Solutions Moving Email from one Provider to AT&T Website Solutions With AT&T Website Solutions, you can check your email using your favorite email program

More information

McAfee Cloud Identity Manager

McAfee Cloud Identity Manager Salesforce Cloud Connector Guide McAfee Cloud Identity Manager version 1.1 or later COPYRIGHT Copyright 2013 McAfee, Inc. All Rights Reserved. No part of this publication may be reproduced, transmitted,

More information

Integrated Cloud Environment Box User s Guide

Integrated Cloud Environment Box User s Guide Integrated Cloud Environment Box User s Guide 2012-2015 Ricoh Americas Corporation It is the reader's responsibility when discussing the information contained this document to maintain a level of confidentiality

More information

IIS, FTP Server and Windows

IIS, FTP Server and Windows IIS, FTP Server and Windows The Objective: To setup, configure and test FTP server. Requirement: Any version of the Windows 2000 Server. FTP Windows s component. Internet Information Services, IIS. Steps:

More information

Moodle and Office 365 Step-by-Step Guide: Federation using Active Directory Federation Services

Moodle and Office 365 Step-by-Step Guide: Federation using Active Directory Federation Services Moodle and Office 365 Step-by-Step Guide: Federation using Active Directory Federation Services This document is provided as-is. Information and views expressed in this document, including URL and other

More information

CA Spectrum and CA Embedded Entitlements Manager

CA Spectrum and CA Embedded Entitlements Manager CA Spectrum and CA Embedded Entitlements Manager Integration Guide CA Spectrum Release 9.4 - CA Embedded Entitlements Manager This Documentation, which includes embedded help systems and electronically

More information

Authentication in XenMobile 8.6 with a Focus on Client Certificate Authentication

Authentication in XenMobile 8.6 with a Focus on Client Certificate Authentication Authentication in XenMobile 8.6 with a Focus on Client Certificate Authentication Authentication is about security and user experience and balancing the two goals. This document describes the authentication

More information

F-Secure Messaging Security Gateway. Deployment Guide

F-Secure Messaging Security Gateway. Deployment Guide F-Secure Messaging Security Gateway Deployment Guide TOC F-Secure Messaging Security Gateway Contents Chapter 1: Deploying F-Secure Messaging Security Gateway...3 1.1 The typical product deployment model...4

More information

Configuration Guide. BES12 Cloud

Configuration Guide. BES12 Cloud Configuration Guide BES12 Cloud Published: 2016-04-08 SWD-20160408113328879 Contents About this guide... 6 Getting started... 7 Configuring BES12 for the first time...7 Administrator permissions you need

More information

Integrated Cloud Environment Google Drive User s Guide

Integrated Cloud Environment Google Drive User s Guide Integrated Cloud Environment Google Drive User s Guide 2012-2015 Ricoh Americas Corporation It is the reader's responsibility when discussing the information contained this document to maintain a level

More information

Configuring EPM System 11.1.2.1 for SAML2-based Federation Services SSO

Configuring EPM System 11.1.2.1 for SAML2-based Federation Services SSO Configuring EPM System 11.1.2.1 for SAML2-based Federation Services SSO Scope... 2 Prerequisites Tasks... 2 Procedure... 2 Step 1: Configure EPM s WebLogic domain for SP Federation Services... 2 Step 2:

More information