Configuring Single Sign-on from the VMware Identity Manager Service to Dropbox

Similar documents
Configuring Single Sign-on from the VMware Identity Manager Service to Amazon Web Services

Configuring Single Sign-on from the VMware Identity Manager Service to WebEx

Configuring Single Sign-on from the VMware Identity Manager Service to ServiceNow

Configuring Single Sign-on from the VMware Identity Manager Service to AirWatch Applications

Configuring Single Sign-On from the VMware Identity Manager Service to Office 365

ThinPrint GPO Configuration for Location-Based Printing

Integrating VMware Horizon Workspace and VMware Horizon View TECHNICAL WHITE PAPER

Setting Up Resources in VMware Identity Manager

VMware Identity Manager Integration with Active Directory Federation Services 2.0

INTEGRATION GUIDE. DIGIPASS Authentication for VMware Horizon Workspace

To set up Egnyte so employees can log in using SSO, follow the steps below to configure VMware Horizon and Egnyte to work with each other.

VMware Identity Manager Administration

Getting Started with Database-as-a-Service

Explore the VMware Horizon 6 Toolbox Auditing and Remote Assistance Capabilities

Egnyte Single Sign-On (SSO) Installation for OneLogin

Offline Data Transfer to VMWare vcloud Hybrid Service

Configuring Salesforce

Configuring SuccessFactors

Google Apps Deployment Guide

Management Pack for vrealize Infrastructure Navigator

User Management Tool 1.5

How to Migrate Citrix XenApp to VMware Horizon 6 TECHNICAL WHITE PAPER

VMware vcenter Support Assistant 5.1.1

DualShield SAML & SSO. Integration Guide. Copyright 2011 Deepnet Security Limited. Copyright 2011, Deepnet Security. All Rights Reserved.

INTEGRATION GUIDE. DIGIPASS Authentication for Google Apps using IDENTIKEY Federation Server

Reconfiguration of VMware vcenter Update Manager

For details about using automatic user provisioning with Salesforce, see Configuring user provisioning for Salesforce.

Security Assertion Markup Language (SAML) Site Manager Setup

Configuring. SuccessFactors. Chapter 67

VMware vcenter Configuration Manager SQL Migration Helper Tool User's Guide vcenter Configuration Manager 5.6

SP-initiated SSO for Smartsheet is automatically enabled when the SAML feature is activated.

Configuring. SugarCRM. Chapter 121

Configuring Multiple ACE Management Servers VMware ACE 2.0

VMware Horizon Mobile Secure Workplace User Installed Applications Support with Liquidware Labs HOW-TO GUIDE

Using the vcenter Orchestrator Plug-In for vsphere Auto Deploy 1.0

Connected Data. Connected Data requirements for SSO

HOTPin Integration Guide: Google Apps with Active Directory Federated Services

Deployment Guide. Deploying F5 BIG-IP Global Traffic Manager on VMware vcloud Hybrid Service

VMware Identity Manager Administration

An overview of configuring WebEx for single sign-on. To configure the WebEx application for single-sign on from the cloud service (an overview)

Active Directory Solution 1.0 Guide

Integration Guide. SafeNet Authentication Service. Using SAS as an Identity Provider for Salesforce

INTEGRATION GUIDE. DIGIPASS Authentication for Salesforce using IDENTIKEY Federation Server

WatchDox Administrator's Guide. Application Version 3.7.5

Folder Proxy + OWA + ECP/EAC Guide. Version 2.0 April 2016

HOTPin Integration Guide: Salesforce SSO with Active Directory Federated Services

VMware Virtual Desktop Manager User Authentication Guide

An Overview of Samsung KNOX Active Directory-based Single Sign-On

This chapter describes how to use the Junos Pulse Secure Access Service in a SAML single sign-on deployment. It includes the following sections:

Installing and Configuring vcenter Support Assistant

Step-by-Step guide for SSO from MS Sharepoint 2010 to SAP EP 7.0x

VMware vsphere 5.0 Evaluation Guide

DIGIPASS as a Service. Google Apps Integration

Cloud Authentication. Getting Started Guide. Version

Adding Single Sign-On to CloudPassage Halo

An overview of configuring WebEx for single sign-on. To configure the WebEx application for single-sign on from the cloud service (an overview)

Integration with Active Directory

Configuring Parature Self-Service Portal

Installing and Configuring vcloud Connector

Installation and Configuration Guide

Drobo How-To Guide Drobo Apps - Configuring Copy Replication

VMware Workspace Portal Reference Architecture

vcloud Automation Center Self-Service Portal Guide

AVG Business SSO Partner Getting Started Guide

Upgrading Horizon Workspace

SAP Best Practices for SAP Mobile Secure Cloud Configuration March 2015

Lenovo Partner Access - Overview

PaperStream Connect. Setup Guide. Version Copyright Fujitsu

An overview of configuring Intacct for single sign-on. To configure the Intacct application for single-sign on (an overview)

Zendesk SSO with Cloud Secure using MobileIron MDM Server and Okta

vrealize Air Compliance OVA Installation and Deployment Guide

Scalability Tuning vcenter Operations Manager for View 1.0

Configuring Global Protect SSL VPN with a user-defined port

Using the vcenter Orchestrator Plug-In for Microsoft Active Directory

DocuSign Connect for Salesforce Guide

INTEGRATION GUIDE. IDENTIKEY Federation Server for Juniper SSL-VPN

Shavlik Patch for Microsoft System Center

Director and Certificate Authority Issuance

Comodo Mobile Device Manager Software Version 3.0

Implementing Federal Personal Identity Verification for VMware View. By Bryan Salek, Federal Desktop Systems Engineer, VMware

VMware vcenter Configuration Manager and VMware vcenter Application Discovery Manager Integration Guide

Configuring EPM System for SAML2-based Federation Services SSO

Administering Jive Mobile Apps

Helping Customers Move Workloads into the Cloud. A Guide for Providers of vcloud Powered Services

WatchDox for Windows User Guide. Version 3.9.0

Flexible Identity Federation

VMware AlwaysOn Point of Care Desktop. with Indigo Identityware software for Fast Access & Strong Authentication with Roaming Desktops

Copyright Pivotal Software Inc, of 10

ACE Management Server Deployment Guide VMware ACE 2.0

Using Internet or Windows Explorer to Upload Your Site

GlobalProtect Features

HIPAA/HITECH Compliance Using VMware vcloud Air

Citrix Virtual Classroom. Deliver file sharing and synchronization services using Citrix ShareFile. Self-paced exercise guide

VMware vcenter Log Insight Getting Started Guide


SAML Authentication Quick Start Guide

SNMP Adapter Installation and Configuration Guide

USER CONFERENCE 2011 SAN FRANCISCO APRIL Running MarkLogic in the Cloud DEVELOPER LOUNGE LAB

Dell One Identity Cloud Access Manager How to Configure for SSO to SAP NetWeaver using SAML 2.0

Transcription:

Configuring Single Sign-on from the VMware Identity Manager Service to Dropbox VMware Identity Manager SEPTEMBER 2015 V1

Configuring Single Sign-On from VMware Identity Manager to Dropbox Table of Contents Overview... 1 Adding Dropbox to VMware Identity Manager Catalog... 1 Add Dropbox to the Catalog... 1 Download Identity Provider Signing Certificate... 1 Setting up Dropbox... 2 Configure Dropbox... 2 Complete the Setup and Review the Application Configuration Page... 3 Testing Single Sign-on Configuration... 5 Set up User in VMware Identity Manager for Testing... 5 Set up User in Dropbox for Testing... 5 Verify Test-User can Sign in to Dropbox... 5 Completing the Configuration in the Catalog... 6 Entitle Users to Dropbox... 6

Overview This document provides information about configuring SAML-based single sign-on from the VMware Identity Manager service to Dropbox. Dropbox is a file hosting service that allows users to save files and folders in Dropbox and access them from their computers, devices, and Dropbox s website. When Dropbox is configured in the VMware Identity Manager catalog, users can sign in to Dropbox from their apps portal or if they sign in to their Dropbox account directly, they are redirected to the VMware Identity Manager sign in page to enter their sign-in credentials. You must have an administrator account for the VMware Identity Manager service, as well as an administrator account for Dropbox. Adding Dropbox to VMware Identity Manager Catalog To enable single sign-on to Dropbox on the service, you must configure the app in the catalog and copy the identity provider signing certificate to Dropbox. Add Dropbox to the Catalog 1. Log in to the VMware Identity Manager administration console. 2. In the Catalog page, click Add Application >...from the cloud application catalog. 3. Click the Dropbox icon. The Modify application page appears with the application information filled in. You can add a description, and if you set up categories, you can apply this app to a category. The Dropbox app is added to the catalog but not configured. You complete the application setup after you configure single sign-on in Dropbox. Download Identity Provider SAML-Signing Certificate You must have the signing certificate from the VMware Identity Manager service for the Dropbox configuration. 1. In the Catalog > Settings tab, click SAML Metadata. 2. Copy and save the Signing Certificate text as a.pem file on your computer. Make sure that you include text from -----BEGIN CERTIFICATE---- through ---------END CERTIFICATE-----. /1

Setting up Dropbox To set up Dropbox for single sign-on from the service, you set up single sign-on in the Dropbox admin pages and upload the VMware Identity Manager SAML signing certificate. Configure Dropbox 1. Sign in to the Dropbox admin console as the admin use, click Admin Console, and navigate to the Authentication > Single Sign-On page. 2. Select Enable single sign-on. 3. Select Required. Users are required to sign in with their single sign-in credentials. Their Dropbox credentials do not work. 4. Enter the services sign-in URL. Enter your VMware Identity Manager login URL in the format https://myco.vmwareidentity.com/saas/api/1.0/post/sso. Replace myco.vmwareidentity.com with your company s VMware Identity Manager service domain name. 5. Click Choose certificate to upload the x.509 certificate.pem file you saved earlier. 6. Click Save changes. /2

Complete the Setup and Review the Application Configuration Page Go to the Application Configuration page and verify that the information is configured correctly. 1. Log in to the VMware Identity Manager administration console. 2. In the Catalog page, select the Dropbox icon. 3. Click Configuration to review the Application Configuration page. You should not need to make any changes to this page. 4. Click Save. /3

/4 Configuring Single Sign-on from VMware Identity Manager to Dropbox

Testing Single Sign-on Configuration Test your single sign-on configuration with a small number of users before deploying the application across your organization. Set up Test User in VMware Identity Manager 1. Log in to the VMware Identity Manager administration console. 2. In the Users & Groups page, click Users and ensure that the test user you is in the list of users. 3. In the Catalog page, click on the Dropbox application. 4. Click Entitlements. 5. Click +Add user entitlement. 6. Select the test user and change the DEPLOYMENT field value for the user to Automatic. For example: 7. Click Save, then click Done. 8. In the top-right corner of the page, click your user name and select Logout. Set up Test User in Dropbox 1. Sign in to the Dropbox admin console as the admin use, click Admin Console, and navigate to the Members page. 2. On the Members page, click Invite members. 3. Enter the email addresses of the test user to invite. Next, verify that a test user can sign in to the My Apps portal. Verify Test-User can Sign in to Dropbox 1. Sign in to the user portal as the test user. 2. Click the Dropbox icon on the My Apps page. You should now have single sign-on access to Dropbox. /5

Completing the Configuration in the Catalog In addition to configuring the Web application for single sign-on to the service, you can configure additional settings to add an access policy, set up app licensing requirements, and entitle users and users to the app. Entitlements Access Policies Licensing Provisioning After you configure a Web application, you can add group entitlements and entitle individual users to the Web app. The VMware Identity Manager service includes a default policy that is automatically assigned to the Web app when you add the app to the Catalog. If you do not want to use the default access policy, create a Web-application-specific access policy and in the Access Policies link, select the access policy set to use for this Web application. For example, you can create a stricter policy than the default, with rules that specify which IP addresses have access to the application, using which authentication methods, and for how long until reauthentication is required. See the VMware Identity Manager documentation at http://pubs.vmware.com. Licensing can be used to require users to request license approval before they can access the application. You can add additional information, including pricing, license type, cost per license and the number of licenses. You can run the Resource Usage report to see the licensing information for the application. Provisioning provides automatic application user-management from a single location. Provisioning adapters allow the Web application to retrieve specific information from VMware Identity Manager as required. The provisioning adapters that can be selected are either Google Apps, Mozy, or Vchs. If you configure these applications, you can select the appropriate provisioning adapter. Entitle Users to Dropbox You can activate single sign-on for all users. Before you do so, ensure that all the user accounts are provisioned in Dropbox. 1. Log in to the VMware Identity Manager administration console. 2. In the Catalog page, click Dropbox. 3. In the Modify application page, click Entitlements. 4. Click +Add group entitlement. /6

5. Select ALL USERS and change the DEPLOYMENT TYPE field value to Automatic. 6. Click Save, then click Done. /7

VMware, Inc. 3401 Hillview Avenue Palo Alto CA 94304 USA Tel 877-486-9273 Fax 650-427-5001 www.vmware.com Copyright 2015 VMware, Inc. All rights reserved. This product is protected by U.S. and international copyright and intellectual property laws. VMware products are covered by one or more patents listed at http://www.vmware.com/go/patents. VMware is a registered trademark or trademark of VMware, Inc. in the United States and/or other jurisdictions. All other marks and names mentioned herein may be trademarks of their respective companies.