How to Configure Active Directory based User Authentication



Similar documents
Configuring User Identification via Active Directory

Field Description Example. IP address of your DNS server. It is used to resolve fully qualified domain names

Device Log Export ENGLISH

IIS, FTP Server and Windows

Setting Up Scan to SMB on TaskALFA series MFP s.

Setting Up Sharp MX-Color Imagers To Scan To

Configuring Global Protect SSL VPN with a user-defined port

Immotec Systems, Inc. SQL Server 2005 Installation Document

Configuring IPSec VPN Tunnel between NetScreen Remote Client and RN300

Stoneware Inc. Hyland Software OnBase. Stoneware, Inc.

How To Integrate Watchguard Xtm With Secur Access With Watchguard And Safepower 2Factor Authentication On A Watchguard 2T (V2) On A 2Tv 2Tm (V1.2) With A 2F

Setting up Sharp MX-Color Imagers for Inbound Fax Routing to or Network Folder

Authentication Methods

Web Hosting Control Panel Guide

NAS 206 Using NAS with Windows Active Directory

PineApp Surf-SeCure Quick

Using Internet or Windows Explorer to Upload Your Site

Transferring Your Internet Services

Dynamic DNS How-To Guide

Training module 2 Installing VMware View

Administering the Web Server (IIS) Role of Windows Server

How to Join QNAP NAS to Microsoft Active Directory (AD)

Service Overview & Installation Guide

Configuring Sponsor Authentication

Establishing two-factor authentication with Barracuda NG Firewall and HOTPin authentication server from Celestix Networks

Using LifeSize systems with Microsoft Office Communications Server Server Setup

MS 10972A Administering the Web Server (IIS) Role of Windows Server

SCADA Security. Enabling Integrated Windows Authentication For CitectSCADA Web Client. Applies To: CitectSCADA 6.xx and 7.xx VijeoCitect 6.xx and 7.

Cloud Services. Sharepoint. Admin Quick Start Guide

LDAP Implementation AP561x KVM Switches. All content in this presentation is protected 2008 American Power Conversion Corporation

MS SQL Server Database Management

Hosted Microsoft Exchange Client Setup & Guide Book

10972-Administering the Web Server (IIS) Role of Windows Server

Summary. How-To: Active Directory Integration. April, 2006

Savvius Insight Initial Configuration

DDNS Management System User Manual V1.0

OneLogin Integration User Guide

NETASQ ACTIVE DIRECTORY INTEGRATION

Manual. Traffic Exchange

Hosted Microsoft Exchange Client Setup & Guide Book

Configuring a Windows 2003 Server for IAS

Network System Management. Creating an Active Directory Domain

Two Factor Authentication in SonicOS

Folder Proxy + OWA + ECP/EAC Guide. Version 2.0 April 2016

User Guide for eduroam

PaperCut Payment Gateway Module CyberSource Quick Start Guide

Using LifeSize Systems with Microsoft Office Communications Server 2007

External Authentication with Citrix Secure Gateway - Presentation server Authenticating Users Using SecurAccess Server by SecurEnvoy

Test Case 3 Active Directory Integration

Integrating a Hitachi IP5000 Wireless IP Phone

Tableau Server Trusted Authentication

Accessing the Media General SSL VPN

Setup Corporate (Microsoft Exchange) . This tutorial will walk you through the steps of setting up your corporate account.

Creating Custom Nameservers Contents

External authentication with Fortinet Fortigate UTM appliances Authenticating Users Using SecurAccess Server by SecurEnvoy

3CX IP PBX with Twilio Elastic SIP Trunking Interconnection Guide

USER GUIDE. Lightweight Directory Access Protocol (LDAP) Schoolwires Centricity

SIP Trunking using the EdgeMarc Network Services Gateway and the Mitel 3300 ICP IP-PBX

CLEO NED Active Directory Integration. Version 1.2.0

VERALAB LDAP Configuration Guide

REQUIREMENTS AND INSTALLATION OF THE NEFSIS DEDICATED SERVER

JusticeConnect AVL for Windows SETUP GUIDE

HP Device Manager 4.6

Application Note: Cisco Integration with Onsight Connect

VOIP-500 Series Phone CUCM 8.0.3a Integration Guide

Connecting EWS using DDNS

Establishing two-factor authentication with Cyberoam UTM appliances and HOTPin authentication server from Celestix Networks

Installing and configuring Microsoft Reporting Services

Step by step guide for connecting PC to wired LAN at dormitories of University of Pardubice

Using Microsoft Expression Web to Upload Your Site

Configuring an External Domain

STARTER KIT. Infoblox DNS Firewall for FireEye

3rd Party VoIP Phone Setup Guide (Panasonic b)

UAB CIS QuickStart Guide Using the RT SelfService Web Interface Revision 1, 3/22/06

Create a New Account Contents

Defender Token Deployment System Quick Start Guide

Step 1: Checking Computer Network Settings:

Password Manager. Version Password Manager Quick Guide

Sentral servers provide a wide range of services to school networks.

NEFSIS DEDICATED SERVER

Solve network scan problems. Common problems and solutions Scan to status Scan to FTP status Job Accounting status...

LDAP User Guide PowerSchool Premier 5.1 Student Information System

Reverse Proxy Guide. Version 2.0 April 2016

How to Configure Captive Portal

Configuring the Active Directory Plug-in

F-SECURE MESSAGING SECURITY GATEWAY

Quick Installation Guide

Technical Publications

NF3ADV VoIP Setup Guide (for TPG)

How to Configure edgebox as a Web Server

Elluminate Live! Access Guide. Page 1 of 7

Integrating LANGuardian with Active Directory

Customer Tips. Configuring Color Access on the WorkCentre 7328/7335/7345 using Windows Active Directory. for the user. Overview

External Authentication with Cisco ASA Authenticating Users Using SecurAccess Server by SecurEnvoy

Macintosh Clients and Windows Print Queues

Startup guide for Zimonitor

HOW TO CONFIGURE SQL SERVER REPORTING SERVICES IN ORDER TO DEPLOY REPORTING SERVICES REPORTS FOR DYNAMICS GP

IP Phone Service Administration and Subscription

Upgrading User-ID. Tech Note PAN-OS , Palo Alto Networks, Inc.

MY HELPDESK - END-USER CONSOLE...

Transcription:

How to Configure Active Directory based User Authentication You Must Have: Microsoft server with Active Directory configured. Windows 2000 Server is configured as Active Directory server in this example. Working DNS server. The above Windows 2000 Server is also configured as DNS server with domain name RANCHTEST3.com Connect the Windows 2000 AD server on the RN unit s management port s network. Windows 2000 Active Directory & DNS Server IP Address: Pc23.gif 10.1.2.107/24 windows2kserver.ranchtest3.com Administrator s Local Management Station IP Address: 10.1.2.105/24 RN Device Mgmt Port IP Address: 10.12.125/24 Host Name: RNBOX Port 4 in Zone Webload 1 Interface IP: 10.1.4.1/24 Host to be Authenticated against Active Directory Zone Webload 1 IP Address: 10.1.4.2/24 User Name: ad2user1 Security Profile: p-ad2user1

1. Configure the host name for RN device Log on to RN web GUI and go to System Configuration Mgmt Port Config Management Port menu. Enter the host name (ex. RNBOX) and click on Change Mgmt IP Settings 2. Configure DNS Server address on RN device. Go to System Configuration Mgmt Port Config DNS Server Configuration menu. Enter the Primary IP (ex. 10.1.2.107) and click on Change DNS Config

3. Go to Windows 2000 DNS Server (IP: 10.1.2.107) and add a host entry for RNBOX Now check that rnbox.ranchtest3.com can be resolvable 4. Go to Windows 2000 AD Server (IP: 10.1.2.107) to add user

Start Settings Control panel Administrative Tools Active Directory Users and Computers 5. Add the user as followed. (ex. Username -> ad2user1, profilename p-ad2user1) Please note that the Description field is being used to define user profile. Also note that Display name is exactly configured as user name. Once the user is created, right click and configure the password. You will need this username and password combination when you try to get authenticate on to RN s network.

6. Configure Active Directory server parameters on RN device. Log back on to RN s web GUI. Go to Firewall Configuration User Authentication Authentication Server Active Directory Server menu, enter AD details and click Modify to save.

For this example, Primary AD Server windows2kserver.ranchtest3.com (Note. Use FQDN format) AD Authentication method Plain Text Base Distinguished Name cn=users,dc=ranchtest3,dc=com Security Profile Attribute description (The description field in Active Directory user configuration is used to define user security profile) 7. Create the user name on RN device Go to Firewall Configuration User Authentication User Configuration Select Authentication Server as External Active Directory Server add User Name (ex. ad2user1) and click on Add User

8. Create user security profile (ex. p-ad2user1) Go to Firewall Configuration Security Profiles

Click on Firewall Rules for Security Profile, enter Profile Name (ex. p- ad2user1) and Profile Description then click Add Profile Click Done to close 9. Create security policies to this profile. This is similar to creating firewall rules for any zone. To do this, go to Firewall Configuration Security Profiles select p-ad2user1 from the drop down menu and start creating security rules by clicking Add/Modify 10. Enable Zones where user authentication is required. For ex. "Zone Webload 1.

Go to Firewall Configuration User Authentication General Configuration. Select zone (ex. Zone Webload 1) from the left window and click on ble User Authentication. When user authentication is enabled, the zone is listed on the right window. Note: The zone called Zone Webload 1 is configure on RN device with port 4 as member. The RN interface IP for this physical zone is 10.1.4.1/24 11. Now, any host connected to Zone Webload 1 has to get authenticated to access network resources. As shown in the diagram, a host with IP 10.1.4.2/24 is in this zone. The host user needs a user id and password go get on to network. To do this, Log on to this host (10.1.4.2) and open windows explorer browser. Enter the url as https://10.1.4.1 then enter the username and password and click Login. (Note: Respective Zone interface IP is used in the url)

A successful authenticated message is displayed once login process is completed. And now the host (10.1.4.2) has network resources available as defined by its security profile (p-ad2user1)

12. User sessions can be monitored and administered by administrator. Firewall Configuration User Authentication User Administration

Firewall Configuration User Authentication Session Administration