Deployment Guide Mar-2016 rev. a. Integrating the Array Standalone Client with RSA Token Automation

Similar documents
Deployment Guide Sept-2014 rev. a. Array Networks Deployment Guide: AG Series and DesktopDirect with VMware Horizon View 5.2

Deployment Guide Sept-2014 rev. a. Load Balancing Windows Terminal Server with Session Directory Using Array APV Series ADCs

Deployment Guide July-2014 rev. a. Deploying Array Networks APV Series Application Delivery Controllers with Oracle WebLogic 12c

Deployment Guide Jan-2016 rev. a. Deploying Array Networks APV Series Application Delivery Controllers with Oracle WebLogic 12c

Deployment Guide May-2015 rev. a. APV Oracle PeopleSoft Enterprise 9 Deployment Guide

Acceleration Performance Tests for IBM Rational ClearTeam Explorer

Deployment Guide July-2014 rev. a. Deploying Array Networks APV Series Application Delivery Controllers for Microsoft Lync Server 2013

Deployment Guide July-2015 rev. A. Deploying Array Networks APV Series Application Delivery Controllers with VMware Horizon View

Cloud Agility with Performance

Workspot, Inc. RSA SecurID Ready Implementation Guide. Partner Information. Last Modified: September 16, Product Information Partner Name

How to integrate RSA ACE Server SecurID Authentication with Juniper Networks Secure Access SSL VPN (SA) with Single Node or Cluster (A/A or A/P)

1. Accessing the LONZA network from a private PC or Internet Café

Global Server Load Balancing

Remote Access End User Guide (Cisco VPN Client)

Defender EAP Agent Installation and Configuration Guide

Instructions for Using Secure . (SMail) via Outlook Web Access. with an RSA Token

DesktopDirect. White Paper. Tablet Access to Business Applications

Defender Token Deployment System Quick Start Guide

This document shows new Citrix users how to set up and log in to their Citrix account.

ZyWALL OTPv2 Support Notes

RSA Authentication Manager 7.1 Basic Exercises

IMS Health Secure Outlook Web Access Portal. Quick Setup

RSA SecurID Soft token. Cisco Anyconnect SSL VPN client. Connection guide: SSL VPN. SSL VPN (Soft token) First time user or after PIN reset

USER MANUAL. CTBTO Remote Access VPN using Cisco AnyConnect

This ADC is JUST Right

Security Provider Integration RADIUS Server

How To Use The Syndicate Bank Rsa Security Token For Internet Banking On Pc Or Mac Or Mac (For A Web Browser) For A Long Time (For An Ipad) For Free (For Free) For An Unlimited Time) For Your

Implementation Guide for. Juniper SSL VPN SSO with OWA. with. BlackShield ID

HOTPin Integration Guide: Microsoft Office 365 with Active Directory Federated Services

Implementation Guide for protecting

Comodo Mobile Device Manager Software Version 1.0

Windows and MAC User Handbook Remote and Secure Connection Version /19/2013. User Handbook

Remote Access Instructions

RSA SecurID Ready Implementation Guide

Check Point FW-1/VPN-1 NG/FP3

HOW TO SILENTLY INSTALL CLOUD LINK REMOTELY WITHOUT SUPERVISION

Accessing the Media General SSL VPN

Access to applications and the network depends on whether or not you are using personal equipment or a Firm-issued laptop or desktop.

Remote Working Service Remote Access - VDI User Instructions

RSA SecurID Ready Implementation Guide

Stonesoft Corp. Stonegate Firewall and VPN

New Brunswick Internal Services Agency. RSA Self-Service Console User Guide

Junos Pulse. Windows In-Box Junos Pulse Client Quick Start Guide. Published: Copyright 2013, Juniper Networks, Inc.

Two-Factor Authentication

icrosoft TMG Replacement with NetScaler

Global VPN Client Getting Started Guide

Secure Global Desktop (SGD)

Logging into Citrix (Epic) using an RSA Soft Token - New RSA User

1. Open the preferences screen by opening the Mail menu and selecting Preferences...

VPN Web Portal Usage Guide

DIRECT INTERNET 3. Install Guide for the Mac OS Operating System

Creating IBM Cognos Controller Databases using Microsoft SQL Server

Configuring IBM Cognos Controller 8 to use Single Sign- On

HOTPin Integration Guide: Google Apps with Active Directory Federated Services

1.6 HOW-TO GUIDELINES

MIGRATION GUIDE. Authentication Server

Using the Dashboard Screen Manager v1.0. This guide provides information about setting up and using the Dashboard Screen Manager.

iphone in Business How-To Setup Guide for Users

Integration Guide. Swivel Secure Authentication

Dell SonicWALL and SecurEnvoy Integration Guide. Authenticating Users Using SecurAccess Server by SecurEnvoy

External Authentication with Cisco VPN 3000 Concentrator Authenticating Users Using SecurAccess Server by SecurEnvoy

Junos Pulse for Google Android

RSA SecurID Software Token 3.0 for Windows Workstations Administrator s Guide

Product Guide Addendum. SafeWord Check Point User Management Console Version 2.1

Contents. VPN Instructions. VPN Instructions... 1

DIS VPN Service Client Documentation

ACCREDITED SOLUTION. EXPLORER Cisco Systems VPN Client

For paid computer support call

2X SecureRemoteDesktop. Version 1.1

VRD for Windows User guide

Update Instructions

QUANTIFY INSTALLATION GUIDE

These instructions will allow you to configure your computer to install necessary software to access mystanwell.com.

A) Secure Virtual Private Network (VPN) access services.

HOTPin Integration Guide: DirectAccess

Cisco ASA 5500-X Series ASA 5512-X, ASA 5515-X, ASA 5525-X, ASA 5545-X, and ASA 5555-X

If you have questions or find errors in the guide, please, contact us under the following address:

Getting Started with StoreGrid Cloud

White Paper. SSL vs. IPSec. Streamlining Site-to-Site VPN Deployments

How to Use Your RSA SecurID Software Token for Windows XP, Vista, or Windows 7 (For ICIS remote access)

Citrix Netscaler Advanced guide for SMS PASSCODE SMS PASSCODE 2014

Cisco VPN Concentrator Implementation Guide

INTRODUCTION... 2 Windows Windows Mac OS X Ubuntu Advanced routing Windows Mac OS X Ubuntu...

JUNOS PULSE APPCONNECT

Quest Soft Token for Windows Phone User Guide

Allianz Global Investors Remote Access Guide

To install the "Microsoft Remote Desktop Client" on OS X "Tiger" or above:

Comodo MyDLP Software Version 2.0. Endpoint Installation Guide Guide Version Comodo Security Solutions 1255 Broad Street Clifton, NJ 07013

HOTPin Integration Guide: Salesforce SSO with Active Directory Federated Services

Aventail Connect Client with Smart Tunneling

Endpoint Security VPN for Windows 32-bit/64-bit

How to connect to the DGL Practice Manager Cloud Server from an Apple Mac

Cloud Authentication. Getting Started Guide. Version

Remote Desktop Connection Setup at King s College in Wilkes-Barre, PA

Array Networks & Microsoft Exchange Server 2010

SafeWord Domain Login Agent Step-by-Step Guide

PRODUCT WHITE PAPER LABEL ARCHIVE. Adding and Configuring Active Directory Users in LABEL ARCHIVE

Update Instructions

Transcription:

Deployment Guide Mar-2016 rev. a Integrating the Array Standalone Client with RSA Token Automation

Table of Contents 1 Introduction... 2 2 Install the RSA SecurID Token Client... 3 3 Import the Token File to RSA SecurID Token Client... 4 4 Install the Array Standalone Client... 6 5 Run the Array Standalone Client... 8 1

1 Introduction Array s AG Series secure access gateways offer two methods of network access: Through a Web client or through a standalone client. This document introduces how to integrate the Array Standalone Client with the RSA token automation. Only the Array Standalone Client for Windows supports this function. With this function, when the end user tries to establish a VPN connection via the Array Standalone Client, they only need to enter the PIN code instead of the token code or passcode. The Array Standalone Client will obtain the token code or passcode via the SDK provided by RSA. To ensure the SDK works normally, the RSA SecurID Token Client must be installed and the valid token file must be imported. The process of integrating the Array Standalone Client with the RSA SecurID software token consists of the following steps: Install the RSA SecurID Token Client Import the token file to the RSA Token Client Install the Array Standalone Client Run the Array Standalone Client The following sections will describe these steps in detail. 2

2 Install the RSA SecurID Token Client The administrator can download the installation package for the client from the official RSA website and deliver it to end users: After obtaining the installation package, end users should: Run RSASecurIDTokenAuto411.msi to install the RSA SecurID Token Client on 32-bit Windows OS. Run RSASecurIDTokenAuto412x64.msi to install the RSA SecurID Token Client on 64-bit Windows OS. 3

3 Import the Token File to RSA SecurID Token Client To import the token file to the RSA SecurID Token Client, end users should do as follows: 1. Obtain the token file from the administrator such as tongjj_000147233970.sdtid. 2. In the Import Token window, click the Import from File action link, as shown in the following figure. 3. Specify the path of the token file and click the OK button, as shown in the following figure. 4. After the token file is imported, the token file name will be the only name displayed on UI of the RSA SecurID Token Client, as shown in the following figure. 4

5. If more than one token file is imported, all the token files can be seen on the UI, as shown in the following figure. After the token files are imported, end users can exit the RSA SecurID Token Client. The Array Standalone Client can obtain the token code or passcode even when the RSA SecurID Token Client is not running. 5

4 Install the Array Standalone Client The administrator can download the Array Standalone Clients installation packages from the Array support site and deliver them to end users: https://support.arraynetworks.net/prx/001/http/supportportal.arraynetworks.net/downloads/downl oads.html After obtaining the installation packages, end users should: Run SSLVPNSetup.exe in the SSLVPNSetup_win32.zip package to install the Array Standalone Client on 32-bit Windows OS. Run SSLVPNSetup_x64.exe in the SSLVPNSetup_win64.zip package to install the Array Standalone Client on 64-bit Windows OS. When creating the profile for the virtual site on the Array Standalone Client, end users should select the Enable RSA Token with Automation check box, specify other parameters and click the OK button, as shown in the following figure. After the check box is selected, end users only need to input the PIN code instead of the passcode or token code, and the Array Client will generate the passcode or token code according to the input PIN code. Note: This check box can be selected only when the virtual site uses RSA authentication only or as one factor of the multi-factor authentication. The administrator can customize the Array Standalone Client to make this check box selected by default by modifying the OEM.ini file as follows before delivering the installation package to end users: RSATokenAutomation=1 (value: 1-enable, 0-disable; defaults to 1) In this case, if the authentication method the virtual site uses is not RSA (such as LocalDB) the end user needs to clear this check box during authentication and enter the correct username and password, as shown in the following figure. 6

7

5 Run the Array Standalone Client Before running the Array Standalone Client, users MUST make sure that the time of current client PC is totally the same as that of the RSA server; otherwise, authentication will fail. a) Only RSA Authentication Used No PIN 1. Under the Profiles tab of the main window, select the profile and click the Connect button. 2. In the displayed Username And Password dialog box, enter the username in the Username text box, leave the Password text box empty, and click the OK button as shown in the following figure. 3. In the displayed Enter your new PIN dialog box, specify the parameters New PIN and Confirm and click the OK button, as shown in the following figure. Then the Array Standalone Client will perform authentication automatically and establish the VPN tunnel. 8

PIN already exists At subsequent logins, the end user does not need to set the new PIN code. During the RSA authentication, in the Username and Password dialog box, enter the username in the Username text box, enter the PIN code in the Password text box, and click the OK button, as shown in the following figure. Multi-Factor Authentication Including RSA This section uses LocalDB+RSA authentication as an example. No PIN 1. Under the Profiles tab of the main window, select the profile and click the Connect button. 2. In the displayed Authenticate Information dialog box, select the LocalDB method name from the Login Method pane, specify the parameters Username and Password for LocalDB and click the OK button, as shown in the following figure. 9

3. Select the RSA method name from the Login Method pane, specify the parameters Username, leave the Password for Radius check box empty, and click the OK button, as shown in the following figure. 4. In the displayed Enter your new PIN dialog box, specify the parameters New PIN and Confirm, and click the OK button, as shown in the following figure. 10

The Array Standalone Client will perform authentication automatically and establish the VPN tunnel. PIN Already Exists At subsequent logins, the end user does not need to set the new PIN code. During the RSA authentication, select the RSA method name from the Login Method pane, enter the username in the Username text box, enter the PIN code in the Password for Radius text box, and click the OK button, as shown in the following figure. 11

About Array Networks Array Networks is a global leader in application delivery networking with over 5000 worldwide customer deployments. Powered by award-winning SpeedCore software, Array application delivery, WAN optimization and secure access solutions are recognized by leading enterprise, service provider and public sector organizations for unmatched performance and total value of ownership. Array is headquartered in Silicon Valley, is backed by over 250 employees worldwide and is a profitable company with strong investors, management and revenue growth. Poised to capitalize on explosive growth in the areas of mobile and cloud computing, analysts and thought leaders including Deloitte, IDC and Frost & Sullivan have recognized Array Networks for its technical innovation, operational excellence and market opportunity. Corporate Headquarters info@arraynetworks.com 408-240-8700 1 866 MY-ARRAY www.arraynetworks.com EMEA rschmit@arraynetworks.com +32 2 6336382 China support@arraynetworks.com.cn +010-84446688 France and North Africa nsedrati@arraynetworks.com +33 6 61174433 India isales@arraynetworks.com +91-080-41329296 Japan sales-japan@ arraynetworks.com +81-44-589-8315 To purchase Array Networks Solutions, please contact your Array Networks representative at 1-866-MY-ARRAY (692-7729) or authorized reseller Mar-2016 rev. a 2016 Array Networks, Inc. All rights reserved. Array Networks and the Array Networks logo are trademarks of Array Networks, Inc. in the United States and other countries. All other trademarks, service marks, registered marks, or registered service marks are the property of their respective owners. Array Networks assumes no responsibility for any inaccuracies in this document. Array Networks reserves the right to change, modify, transfer, or otherwise revise this publication without notice. 12