Employee Active Directory Self-Service Quick Setup Guide (V2.0) Last update: 11/5/2014 Copyright 2014 InfraDog Inc. All rights reserved Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com
Employee AD Self-Service Key features Unlock account and reset/change AD password Search company directory and organization chart Update personal information in AD: phone, mobile, address, personal photo File access SharePoint Portal access Out-of-Office assistant Get company latest news update with mobile push notification Password expiration notice In-app branding with customer company logo and support information This guide will help you set up InfraDog solution with 5 simple steps. Separated mobile app will be required for employee enrollment. Please refer Step 5 for download mobile app download link. Step 1: InfraDog Account Sign-Up Register at https://portal.infradog.com/account/register for free Your login information will be your email address with Infradog password. This login information will be used for Management Point activation. You can manage your account with this login ID through InfraDog Admin Portal https://portal.infradog.com/account/logon Step 2: Management Point (MP) Deployment and AD Discovery AD InfraDog Management Point (MP) is a small piece of software installed in your target network to work as access gateway for your mobile device. Management Point (MP) software can be installed on any Windows computer (Windows XP~Windows Server 2012) in your network. Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 2
MP computer requires direct or proxy internet access. There is NO firewall opening or VPN required to make MP to work. MP is running as service on computer so you can close the MP console after the configuration but you have to leave MP computer always ON when you access your IT infrastructure from mobile device. You don t need to install MP on domain controller locally and we recommend you use InfraDog agentless discovery process to discover domain controller remotely. Multiple MPs can be activated by same login ID for complex AD domain or site structure. 1. Management Point Activation Download (http://www.infradog.com/downloads.aspx) & install InfraDog Management Point on any Windows computer with outbound internet access in your target network. If proxy connection setup is required, click on Validate Connection button or go to Settings -> Internet Connection to configure. Launch Management Point software and activate it with your InfraDog account. Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 3
Make sure your MP computer has direct internet connection or you can configure proxy for Internet access. This is onetime activation. There is no dependency on this account for future MP operation. You could verify your login ID used for activation by login to our Web Portal https://portal.infradog.com/account/logon 2. Agentless Active Directory Domain Discovery You can discover AD through Configuration Wizard by clicking Add Remote System You can discover AD by choosing Active Directory tab on left control bar with associated tasks Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 4
Click Active Directory checkbox Put in domain controller s IP address in discovery range Create discovery credential which has full administrative rights for AD (Example: Domain Admin). The account information will be encrypted and stored locally on your MP computer and never leave your network. Check security white paper for more information http://download.infradog.com/download/infradog-security-whitepaper.pdf You can discover multiple domain controllers for same domain for high availability. Multiple discovered DCs will use additional licenses. Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 5
Once discovery process is completed, select the Active Directory domain controller you would like to enable for Self-Service then click Push to Mobile button. Step 3: Enable AD Employee Self-Service Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 6
After the push process is done, click on the domain name then click Enable Self- Service on the right side menu. Step 4: Configure Employee Self-Service 1. General Settings Click Edit Self-Service then a configuration page will be presented. Two Factor Authentication (Optional): when enabled, a verification code will be sent to employee Email address and will be required along with employee account password during Self-Service enrollment. Password Expiration Reminders (Optional): once enabled, users will receive Email reminders before the actual password expiration date. 3 reminder dates can be setup for Email reminders. PIN Code Enforcement (Optional): when selected, this will enforce end user to set up a 4 digits PIN code, which will be required every time accessing the self-service app. Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 7
Selected OUs (Organizational Units): this option allows administrator to select which OU will be included in Self-Service and only users within selected OU can enroll for Employee Self-Service. Email Domains: This email domain will be used for employee email address on their enrollment. Administrators may choose to add or remove domain manually. If you encounter any email domain conflict issues, please contact InfraDog support at support@infradog.com. 2. File Sharing and SharePoint Add file shares by UNC format like \\servername\share\. Add SharePoint URL (SharePoint 2010/2013 and Office 365 Supported). We support direct download files from Share folder and SharePoint on mobile. We support access file from Shared folder and SharePoint by Email attachment with SMTP relay. This function is optional. Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 8
3. Data Access We support access backend Microsoft SQL database by configuring Data Container through T-SQL statement. You can reference separate ichaq deployment guide for detail steps http://www.infradog.com/downloads.aspx Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 9
4. Out of Office You can configure Outlook Out-of-Office setting by adding Microsoft Exchange OWA URL so employee can manage Out-of-Office setting on mobile device. We support Microsoft Exchange 2007/2010/2013 and Office 365 Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 10
5. Announcement Mobile users will be able to check latest IT announcement through What s New in Self-Service Mobile App. This information is useful for any IT related news update. The content in subject line can be broadcasted via mobile push notification using Send Message button. Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 11
6. Branding Administrator can upload own company logo with size of 460x120 pixels or smaller. Company Name, Support Phone and Support Email can be modified. End users can call and email directly from the Self-Service mobile app. Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 12
7. Configuration on Web Admin Portal Some of the configurations can also be changed on InfraDog Web Admin Portal. Step 5: Enroll AD Employee Self-Service on Mobile End users will need to download the Self-Service app at: ios: https://itunes.apple.com/app/employee-active-directory/id775129885?mt=8 Android: https://play.google.com/store/apps/details?id=com.infradog.ad_selfservice BlackBerry: http://www.infradog.com/link.aspx?id=107 Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 13
Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 14
End users will do one time Self-Service enrollment using company Email and AD Password (along with verification code, if Two Factor Authentication is enabled in Self-Service Configuration) End user will need to setup PIN code protection if PIN code is enforced from administrator. Users will need to set up 3 security questions with answers, which will be required when user reset password / unlock AD account. For more detailed demonstration on the Self-Service Mobile App: Demo Video may be viewed at: http://www.infradog.com/link.aspx?id=216 Account Management To manage your account or subscribe to InfraDog service please login InfraDog admin portal https://portal.infradog.com/account/logon Monthly subscription and you can add more licenses anytime. ( 10 Free licenses for Small Business Edition on first time sign-up) Annual subscription is available by request. You can cancel subscription anytime with no extra charge. Detailed price list at http://www.infradog.com/pricing.aspx Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 15
Need assistance or have questions? Video: http://www.infradog.com/link.aspx?id=218 FAQ: http://www.infradog.com/faq.aspx Tech support: support@infradog.com Billing questions: billing@infradog.com Corporate Phone: +1 (416) 473-4096, Fax: +1 (888) 863-3936, Email: support@infradog.com P a g e 16