SecureW2 and Wi-Fi Cloud. Integration Guide
|
|
- Maryann Welch
- 6 years ago
- Views:
Transcription
1 SecureW2 and Wi-Fi Cloud Integration Guide
2 SecureW2 and Wi-Fi Cloud Integration Guide Deployment Overview This guide demonstrates how to integrate a WatchGuard Wi-Fi Cloud Captive Portal with SecureW2 authentication for users to authenticate, and receive certificates, for WPA2 Enterprise EAP-TLS Wi-Fi access, and an HTTPS proxy certificate deployed for HTTPS content inspection on a WatchGuard Firebox. WPA2 Enterprise EAP-TLS wireless communication is secured by a certificate pair that requires no password, and the client certificate is unique to the client. Integration Summary These tools are used to secure wireless communication and HTTPS Proxy traffic: SecureW2: o SecureW2 JoinNow MultiOS Management Portal WatchGuard: o o o WatchGuard AP420 WatchGuard Wi-Fi Cloud Account WatchGuard Firebox Microsoft Server 2016 o Active Directory o Certificate Services Test Topology SecureW2 JoinNow MultiOS Management Portal interacts with the WatchGuard AP420 through policies to push certificates to end users. SecureW2 and Wi-Fi Cloud Integration Guide 1
3 SecureW2 Network Profile, Redirect URL, and RADIUS Use the Device Onboarding section in the SecureW2 console to acquire the RADIUS information and portal redirect URL. 1. Open the SecureW2 JoinNow MultiOS Management Portal and select Device Onboarding > Getting started. 2. In the Quickstart Network Profile Generator section, from the Profile Type drop-down list, select Wireless. 3. From the Profile Type drop-down list, select Wireless. 4. In the SSID text box, type the SSID for the network to be secured by TLS. 5. From the Security Type drop-down list, select WPA2-Enterprise. 6. From the EAP Method drop-down list, select EAP-TLS. 7. From the Policy drop-down list, select Default. 8. Click Create. The Network Profiles page appears. 9. In the Functions column, click View, and copy the URL. This is the Redirect Portal URL for deployment in WatchGuard Wi-Fi Cloud. 10. Return to the SecureW2 JoinNow MultiOS Management Portal and select AAA Management > AAA configuration. 11. Note the RADIUS Port, Primary and Secondary IP Address, and the Shared Secret. WatchGuard Wi-Fi Cloud Basic Configuration This integration guide covers only the basic configuration of the WatchGuard Wi-Fi Cloud AP. To complete the configuration of your AP, you must: Upgrade your AP device software Add the AP device to a location in your organization tree Create SSID profiles for your AP device Create a device template to apply common device, radio, and SSID settings to your AP device Create and apply an authorized WLAN security policy for your SSID 2 WatchGuard Technologies, Inc.
4 Configure WatchGuard Wi-Fi Cloud with the SecureW2 RADIUS Information for EAP-TLS 1. Log in to your WatchGuard account. 2. Select My WatchGuard > Managed Wi-Fi Cloud > Manage. 3. Select Configuration > Device Configuration > RADIUS Profiles. 4. On the RADIUS Profiles tab, click Add RADIUS Profile. 5. In the Profile Name text box, type a friendly description for the profile. 6. In the IP Address text box, type the Primary IP address of the RADIUS server from SecureW2. This IP address requires outbound access in your firewall rules. This is open in the default outgoing policy. 7. In the Authentication Port text box, type the port number listed for the RADIUS server from SecureW2. This port requires outbound access in your firewall rules. This is open in the default outgoing policy. 8. Leave the Accounting Port, in the default setting. 9. In the Shared secret text box, type the shared secret from the SecureW2 RADIUS server. 10. Click Save. 11. Repeat these steps for the second SecureW2 RADIUS server. SecureW2 and Wi-Fi Cloud Integration Guide 3
5 Configure WatchGuard Wi-Fi Cloud with the SSID Profile for EAP-TLS 1. In WatchGuard Wi-Fi Cloud, open Manage. 2. Select Configuration > Device Configuration > SSID Profiles. 3. Select Add New Wi-Fi Profile. 4. Type the Profile Name and SSID name for secure EAP-TLS client connections. 5. Expand the Security section, from the Security Mode drop-down list select WPA2 and select 802.1X. 6. From the RADIUS Authentication drop-down list, select the two configured RADIUS servers. 7. Expand the Network section and set the VLAN IDto 30. You will use this VLAN ID n your firewall configuration. 8. Click Save. 4 WatchGuard Technologies, Inc.
6 Configure WatchGaurd Wi-Fi Cloud with the SSID Profile for Splash Page Redirection 1. In WatchGuard Wi-Fi Cloud, open Manage. 2. Select Configuration > Device Configuration > SSID Profiles. 3. Select Add New Wi-Fi Profile. 4. Type the Profile Name and SSID name for client connections. 5. Expand the Security section and verify the Security Mode is set to Open. 6. Expand the Network section and set the VLAN ID to 20. This VLAN ID is used in your firewall configuration. 7. Expand the Captive Portal section and select Enable Captive Portal. 8. Select External Splash Page for Sign-in/Click-through. 9. In the Splash Page URL text box, type the View URL from the SecureW2 configuration. SecureW2 and Wi-Fi Cloud Integration Guide 5
7 10. To configure the Walled Garden Sites, click Add and add these four SecureW2 URLs: cloud.securew2.com, service.securew2.com, pki-services.securew2.com auth.securew2.com. 11. Click OK when finished. 6 WatchGuard Technologies, Inc.
8 12. Add other Walled Garden Sites as required by your operating systems to provide access to their respective App Store or prevent certificate issues. Operating System Mac Windows Walled Garden Sites *.akamaiedge.net *.akamaitechnologies.com *.apple.com *.apple.com.edgekey.net apple.com captive.apple.com gsp1.apple.com urs.microsoft.com urs.smartscreen.microsoft.com airport.us appleiphonecell.com ibook.info itools.info thinkdifferent.us apple.com/library/test/success.html Android *.play.google.com *.store.google.com android.clients.google.com lh3.googleusercontent.com lh6.ggpht.com lh5.ggpht.com lh4.ggpht.com lh6.googleusercontent.com lh3.ggpht.com googleapis.com google-analytics.com cache.google.com / / /16 Kindle / / /19 SecureW2 and Wi-Fi Cloud Integration Guide 7
9 13. Expand Captive Portal, and on the right, in the Redirect URLtext field, type the URL to which to send users after they access the portal. 14. Click Save. 8 WatchGuard Technologies, Inc.
10 Configure the WatchGuard Firebox for SecureW2 Access to Active Directory SecureW2 connects to Active Directory at the public IP address This connection uses port 636 for secure access. Active Directory and Certificate Services are required on Windows Server Log in to your WatchGuard Firebox. 2. From Fireware Web UI, select Firewall > SNAT > Add. 3. Type a Name and Description for the SNAT. 4. Under SNAT Members, click Add. 5. From the External/Optional IP Address drop-down list, select Any-External, External, or an IP address that is public facing. 6. Set the Internal IP Address to the private address of the Active Directory server. 7. Click OK and Save. 8. Select Firewall > Firewall Policies > Add Policy. 9. Select Custom. Click Add. SecureW2 and Wi-Fi Cloud Integration Guide 9
11 10. Type a Name, Description, and add TCP port Click Save. 12. You are redirected to the Select a policy type page with your new custom policy selected in the drop-down list. Click Add Policy to continue with the policy creation. 13. In the From field, remove Any-Trusted. Click Add. 14. From the Member type drop-down list, select Host IPv Type the SecureW2 public IP address of Click OK. 16. In the To field, remove Any-External. Click Add. 17. From the Member type drop-down list, select Static NAT. 18. Select the SNAT you created in an earlier step. Click OK. 10 WatchGuard Technologies, Inc.
12 19. Confirm the configuration. Click Save. SecureW2 and Wi-Fi Cloud Integration Guide 11
13 Configure the WatchGuard Firebox with the Access Point VLANs 1. Log in to your WatchGuard Firebox. 2. From Fireware Web UI, select Network > Interfaces. 3. Select the interface, click Edit. 4. Type an Interface Name (Alias) and Interface Description. 5. From the Interface Type drop-down list, select VLAN. 6. Click Save. 7. Select Network > VLAN. 8. Click Add. 9. Type a Name, Description, VLAN ID, Security Zone, and an IP Address for the interface. 12 WatchGuard Technologies, Inc.
14 10. Select the desired VLAN interface and from the Select Traffic drop-down list, select Untagged Traffic. This configuration employs a direct connection to the firewall for the access point. Untagged VLAN management for the access point can also be deployed on a switch. 11. Click Save. 12. Select Network > VLAN. 13. Click Add. 14. Use VLAN ID 10 and type the configuration for the On-Boarding VLAN. 15. Set the VLAN tagging to Tagged Traffic. SecureW2 and Wi-Fi Cloud Integration Guide 13
15 16. Click Save. 17. Repeat the procedure for tagged traffic on a EAP-TLS VLAN. 18. The final VLAN configuration should appear as shown here: 14 WatchGuard Technologies, Inc.
16 Configure the WatchGuard Firebox Policies for Access Point VLANs 1. Log in to your WatchGuard Firebox. 2. From Fireware Web UI, select Firewall > Firewall Policies. 3. Click Add Policy. 4. Select Packet Filter and from the drop-down, select the Any. 5. Click Add Policy. 6. In the From field, remove the Any-Trusted alias. 7. In the From field, click Add. SecureW2 and Wi-Fi Cloud Integration Guide 15
17 8. Select the AP Management VLAN. Click OK. 9. Repeat the steps to add the On-Boarding VLAN. 10. Change the Name of the policy. Click Save. 11. Select Firewall > Firewall Policies. Click Add Policy. 12. Select Proxies. From the drop-down list select HTTPS-Proxy. 13. From the --Select a Proxy action -- drop-down list, select HTTPS-Client Standard. 14. Click Add Policy. 15. Type a new Name for the HTTPS-Proxy policy. 16. In the From field, remove the Any-Trusted alias. 17. In the From field, click Add. 18. In the Add Member page, from the Member type drop-down list, select Alias. 19. From the list, select the interface alias. Click OK. 16 WatchGuard Technologies, Inc.
18 20. Select the Proxy Action tab. 21. From the Proxy Action drop-down list, select Clone the current proxy action. 22. In the Content Inspection Summary, click Edit. 23. Select the option for Enable Content Inspection. SecureW2 and Wi-Fi Cloud Integration Guide 17
19 24. Click OK. 25. Click Save to save the policy. 18 WatchGuard Technologies, Inc.
20 Retrieve the HTTPS-Proxy Certificate from the WatchGuard Firebox For more detailed information about content inspection for the HTTPS Proxy, see HTTPS-Proxy: Content Inspection. 1. Log in to your WatchGuard Firebox. 2. From Fireware Web UI, select System > Certificates. 3. Highlight the Proxy Authority certificate from the list. Click Export. 4. Browse to the location where you want save the certificate. Click Save. SecureW2 and Wi-Fi Cloud Integration Guide 19
21 Retrieve the Certificate for Active Directory Communication 1. From Windows 2016 Server, open the Certificate Authority application. Or, right-click Start > Run. Type certsrv.msc in the dialog box. Click OK. 2. Right-click the domain in the Certificate Authority (Local) section and select Properties. 20 WatchGuard Technologies, Inc.
22 3. Click View Certificate. 4. Select the Details tab. 5. Click Copy to File The Certificate Export Wizard appears. Click Next. SecureW2 and Wi-Fi Cloud Integration Guide 21
23 7. Select DER encoded binary X.509 (.CER). Click Next. 22 WatchGuard Technologies, Inc.
24 8. Provide a File name, browse to a location, and click Save. 9. Click Next. 10. Click Finish. SecureW2 and Wi-Fi Cloud Integration Guide 23
25 Create a Wi-Fi Authentication Group in Active Directory A Security Group is created in the Active Directory to attach the user to SecureW2 Authentication Policies, User Role Policies, and Enrollment Policies. 1. From Windows Server 2016, open Server Manager. 2. Select Tools > Active Directory Users and Computers. 3. Right-click the domain and select New > Group. 4. In the Group nametext box, type the name of the security group associated with users. 5. In the Group name (pre-windows 2000)text box, type the same name if it is not already pre-populated. 6. In the Group scopesection, select Global. 7. In the Group type section, select Security. 8. Click OK. 9. Double-click the name of the new security group created. 10. Select the Members tab. 11. Click Add. 12. Type the full name of each user. Select Check Names to verify and click OK to submit. 24 WatchGuard Technologies, Inc.
26 13. Click OK. SecureW2 and Wi-Fi Cloud Integration Guide 25
27 Configure SecureW2 for Active Directory Queries Communication to Active Directory is encrypted with the certificate retrieved from the server on port 636 through the restrictive policy created on the WatchGuard Firebox. 1. From the SecureW2 Management Portal, select Identity Management > Identity Providers. 2. Click Add Identity Provider. 3. Type a Name and Description. 4. From the Type drop-down list, select LDAP. 5. Click Save. 6. In the Subject Name Attribute text box: samaccountname is used if you deploy a simple user name login. userprincipalname is used for the format username@example.com. 7. In the Group Map Attribute text box, type memberof. 6. Select the Connections tab. 7. Click Add Connection. 26 WatchGuard Technologies, Inc.
28 8. Type the connection information for your Active Directory connection. 9. In the Name text box, type the name of the IDP connection. 10. In the Descriptiontext box, describe the IDP connection. 11. In the Hostname text box type the hostname that resilves to a public IP Address. This must match the configured name of the server and the issuer listed in the certificate. 12. In the Port text box, set to port number to 389, if the connection is unsecured. If the connection is secured with the certificate, set the port number to 636. Select the use TLS/SSL check box to change the value to To add a Certificate, click Choose File and upload the self-signed certificate you obtained for use in LDAP communication over SSL. 14. Select Anonymous/Admin to specify whether the connection type is anonymous or Administrator. For the anonymous connection, no information is retrieved from Active Directory while testing the connection. 15. Or select Admin DN. This parameter is enabled only if you have selected the connection type as admin. Use the distinguished name format. For example: CN=Administrator, CN=users, DC=example, DC=com. 16. In the Admin Password text box, type the password of the administrator. This is enabled only if you have select the Admin connection type. 17. To retrieve and select a Subject Base DN from the Active Directory, click Naming Context. 18. To retrieve and select a Group Base DN from the Active Directory, click Naming Context. 19. Set the Server Timeout in seconds for the Active Directory query to timeout. 20. To confirm the Active Directory settings, click Test Connection. SecureW2 and Wi-Fi Cloud Integration Guide 27
29 21. Click OK. Click Update to return to the Identity Provider settings. 28 WatchGuard Technologies, Inc.
30 Configure the SecureW2 Network Profile for the HTTPS Proxy Decryption Certificate 1. From the SecureW2 JoinNow MultiOS Management Portal, select Device Onboarding > Network Profiles. 2. Click Edit for the new profile. The existing certificate is for encryption of wireless client traffic through EAP-TLS. 3. Click Add/Remove Certificate. SecureW2 and Wi-Fi Cloud Integration Guide 29
31 4. Click Choose File and browse to the location of the HTTPS Proxy Certificate. 5. Select the certificate file. Click Open. 6. Clear any check marks present in the Install column. 7. Click Upload. Click OK to confirm. 8. Click Cancel. Re-open the Add/Remove Certificate page. 9. Leave the Install check mark selected on the EAP-TLS certificate and find the uploaded HTTPS Proxy Certificate. 10. Select the check mark for Installfor the private HTTPS Proxy Certificate. 11. Click Update. The Certificates section should now contain both the ESP-TLS Certificate and the HTTPS Proxy Certificate. 12. Return to the Device Onboarding > Network Profiles page. 13. In the configured Network Profile, click Publish/Re-publish. 14. Repeat the Publish/Re-publish action for the new Network Profile Group. 30 WatchGuard Technologies, Inc.
32 Configure the SecureW2 Authentication Policy The SecureW2 Authentication Policy defines the protocols that the JoinNow MultiOS uses to communicate with the devices and assigns the Identity Provider. 1. From the SecureW2 JoinNow MultiOS Management Portal, select Policy Management > Authentication. 2. Click Edit on the auto-created Authentication Policy. 3. Select the Settings tab. 4. From the Identity Provider drop-down list, select the Identity Provider you created. 5. Click Update. Configure the SecureW2 User Role Policy 1. From the SecureW2 JoinNow MultiOS Management Portal select Policy Management > User Roles. 2. Click Edit on the Default Role Policy. 3. Select the Conditions tab. 4. From the Identity Provider drop-down list, select the configured provider. 5. Click Update. SecureW2 and Wi-Fi Cloud Integration Guide 31
33 Configure the SecureW2 Enrollment Policy 1. From the SecureW2 JoinNow MultiOS Management Portal, select Policy Management > Enrollment. 2. Select Edit on the Default Enrollment Policy. 3. On the Conditions tab, from the User Role and Device Role drop-down list, select the default policies. 4. Click Update. Test a Wireless Client 1. Connect to the On-Boarding Wi-Fi SSID. 2. The client will be redirected to the JoinNow configured view URL. 32 WatchGuard Technologies, Inc.
34 3. Click JoinNow. 4. From the download dialog box, click Run. 5. Type the Username and Password. Click Next. The user is automatically redirected to the EAP-TLS wireless connection. SecureW2 and Wi-Fi Cloud Integration Guide 33
35 About This Guide Guide Type Documented Integration WatchGuard or a Technology Partner has provided documentation demonstrating integration. Guide Details WatchGuard provides integration instructions to help our customers configure WatchGuard products to work with products created by other organizations. If you need more information or technical support about how to configure a third-party product, see the documentation and support resources for that product. Information in this guide is subject to change without notice. Companies, names, and data used in examples herein are fictitious unless otherwise noted. No part of this guide may be reproduced or transmitted in any form or by any means, electronic or mechanical, for any purpose, without the express written permission of WatchGuard Technologies, Inc. Guide revised: 3/5/2018 Copyright, Trademark, and Patent Information Copyright WatchGuard Technologies, Inc. All rights reserved. All trademarks or trade names mentioned herein, if any, are the property of their respective owners. Complete copyright, trademark, patent, and licensing information can be found in the Copyright and Licensing Guide, available online at About WatchGuard WatchGuard Technologies, Inc. is a global leader in network security, providing best-in-class Unified Threat Management, Next Generation Firewall, secure Wi-Fi, and network intelligence products and services to more than 75,000 customers worldwide. The company s mission is to make enterprisegrade security accessible to companies of all types and sizes through simplicity, making WatchGuard an ideal solution for Distributed Enterprises and SMBs. WatchGuard is headquartered in Seattle, Washington, with offices throughout North America, Europe, Asia Pacific, and Latin America. To learn more, visit WatchGuard.com. For additional information, promotions and updates, follow WatchGuard on on Facebook, or on the LinkedIn Company page. Also, visit our InfoSec blog, Secplicity, for real-time information about the latest threats and how to cope with them at Address 505 Fifth Avenue South Suite 500 Seattle, WA Support U.S. and Canada All Other Countries Sales U.S. and Canada All Other Countries SecureW2 and Wi-Fi Cloud Integration Guide 34
Mitel Cloud VOIP. Integration Guide
Mitel Cloud VOIP Integration Guide i WatchGuard Technologies, Inc. Mitel VoIP, WatchGuard Wi-Fi Cloud, WatchGuard Firebox, and QoS Deployment Overview This document describes how to set up QoS from the
More informationOkta SAML Authentication with WatchGuard Access Portal. Integration Guide
Okta SAML Authentication with WatchGuard Access Portal Integration Guide i WatchGuard Technologies, Inc. Okta SAML Authentication with WatchGuard Access Portal Deployment Overview You can configure Single
More informationOneLogin SAML Authentication with WatchGuard Access Portal. Integration Guide
OneLogin SAML Authentication with WatchGuard Access Portal Integration Guide i WatchGuard Technologies, Inc. One Login SAML Authentication with WatchGuard Access Portal Deployment Overview You can configure
More informationTDR and Microsoft Security Essentials. Integration Guide
TDR and Microsoft Security Essentials Integration Guide i WatchGuard Technologies, Inc. TDR and Microsoft Security Essentials Deployment Overview Threat Detection and Response (TDR) is a collection of
More informationTDR and Windows Defender. Integration Guide
TDR and Windows Defender Integration Guide i WatchGuard Technologies, Inc. TDR and Windows Defender Deployment Overview Threat Detection and Response (TDR) is a collection of advanced malware defense tools
More informationTDR and Symantec. Integration Guide
TDR and Symantec Integration Guide i WatchGuard Technologies, Inc. TDR and Symantec Deployment Overview Threat Detection and Response (TDR) is a collection of advanced malware defense tools that correlate
More informationThreat Detection and Response. Deployment Guide
Threat Detection and Response Deployment Guide About This Guide The Threat Detection and Response Getting Started Guide is a guide to help you set up the Threat Detection and Response subscription service.
More informationIntegration Guide. Eduroam
Integration Guide Eduroam Revised: 16 August 2017 About This Guide Guide Type Documented Integration WatchGuard or a Technology Partner has provided documentation demonstrating integration Guide Details
More informationFireware. AP Deployment Guide. WatchGuard APs Gateway Wireless Controller Fireware OS v12.1
Fireware AP Deployment Guide WatchGuard APs Gateway Wireless Controller Fireware OS v12.1 About This Guide The WatchGuard Fireware APDeployment Guide is a guide for deployment of a WatchGuard AP with a
More informationFirebox Cloud. Deployment Guide. Firebox Cloud for AWS and Microsoft Azure
Firebox Cloud Deployment Guide Firebox Cloud for AWS and Microsoft Azure About This Guide The Firebox Cloud Deployment Guide is a guide for deployment of a WatchGuard Firebox Cloud virtual security appliance.
More informationIntegration Guide. LoginTC
Integration Guide LoginTC Revised: 21 November 2016 About This Guide Guide Type Documented Integration WatchGuard or a Technology Partner has provided documentation demonstrating integration. Guide Details
More informationConfiguration Example
Configuration Example Use NAT for Public Access to Servers with Private IP Addresses on the Private Network Example configuration files created with WSM v11.10.1 Revised 7/21/2015 Use Case In this use
More informationWatchGuard XTMv Setup Guide
WatchGuard XTMv Setup Guide All XTMv Editions Copyright and Patent Information Copyright 1998 2011 WatchGuard Technologies, Inc. All rights reserved. WatchGuard, the WatchGuard logo, LiveSecurity, and
More informationCloudpath and Aruba Instant Integration
Cloudpath and Aruba Instant Integration This document describes the process to use Ruckus Cloudpath to secure an Aruba Instant network. The following versions were used for this example: Ruckus Cloudpath
More informationWatchGuard XTMv Setup Guide Fireware XTM v11.8
WatchGuard XTMv Setup Guide Fireware XTM v11.8 All XTMv Editions Copyright and Patent Information Copyright 1998 2013 WatchGuard Technologies, Inc. All rights reserved. WatchGuard, the WatchGuard logo,
More informationConfiguration Example
Configuration Example Use a Branch Office VPN for Failover From a Private Network Link Example configuration files created with WSM v11.10.1 Revised 7/22/2015 Use Case In this configuration example, an
More informationCertificate Management
Certificate Management This guide provides information on...... Configuring the NotifyMDM server to use a Microsoft Active Directory Certificate Authority... Using Certificates from Outside Sources...
More informationVMware AirWatch Certificate Authentication for Cisco IPSec VPN
VMware AirWatch Certificate Authentication for Cisco IPSec VPN For VMware AirWatch Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More informationHP MSM Series. Setup Guide
HP MSM Series Setup Guide Disclaimer THIS DOCUMENTATION AND ALL INFORMATION CONTAINED HEREIN ( MATERIAL ) IS PROVIDED FOR GENERAL INFORMATION PURPOSES ONLY. GLOBAL REACH AND ITS LICENSORS MAKE NO WARRANTY
More informationAruba Mobility. Setup Guide
Aruba Mobility Setup Guide Disclaimer THIS DOCUMENTATION AND ALL INFORMATION CONTAINED HEREIN ( MATERIAL ) IS PROVIDED FOR GENERAL INFORMATION PURPOSES ONLY. GLOBAL REACH AND ITS LICENSORS MAKE NO WARRANTY
More informationQuick Start Guide WatchGuard Technologies, Inc.
WatchGuard XCS Platform Appliance Models: 970 and 1170 Quick Start Guide WatchGuard Technologies, Inc. WatchGuard XCS Quick Start Guide Registration and Configuration 1 2 Register with LiveSecurity Service
More informationWEB ANALYTICS HOW-TO GUIDE
WEB ANALYTICS HOW-TO GUIDE MOTOROLA, MOTO, MOTOROLA SOLUTIONS and the Stylized M logo are trademarks or registered trademarks of Motorola Trademark Holdings, LLC and are used under license. All other trademarks
More informationRelease Notes for Avaya WLAN 9100 AOS-Lite Operating System WAP9112 Release WAP9114 Release 8.1.0
WLAN 9100 Release Notes Release Notes for Avaya WLAN 9100 AOS-Lite Operating System WAP9112 Release 8.1.0 WAP9114 Release 8.1.0 Avaya Inc - External Distribution 1. Introduction This document provides
More informationIntegration Guide. SecureAuth
Integration Guide SecureAuth Revised: 9 November 2016 About This Guide Guide Type Documented Integration WatchGuard or a Technology Partner has provided documentation demonstrating integration. Guide Details
More informationForeScout CounterACT. Controller Plugin. Configuration Guide. Version 1.0
ForeScout CounterACT Network Module: Centralized Network Controller Plugin Version 1.0 Table of Contents About the Centralized Network Controller Integration... 4 About This Plugin... 4 How It Works...
More informationRuckus SmartZone 100 and Virtual SmartZone (Essentials)
Ruckus SmartZone 100 and Virtual SmartZone (Essentials) For firmware versions 3.0-3.4 Setup Guide Disclaimer THIS DOCUMENTATION AND ALL INFORMATION CONTAINED HEREIN ( MATERIAL ) IS PROVIDED FOR GENERAL
More informationVMWARE HORIZON CLOUD WITH VMWARE IDENTITY MANAGER QUICK START GUIDE WHITE PAPER MARCH 2018
VMWARE HORIZON CLOUD WITH VMWARE IDENTITY MANAGER QUICK START GUIDE WHITE PAPER MARCH 2018 Table of Contents Introduction to Horizon Cloud with Manager.... 3 Benefits of Integration.... 3 Single Sign-On....3
More informationAzure MFA Integration with NetScaler
Azure MFA Integration with NetScaler This guide focuses on describing the configuration required for integrating Azure MFA (Multi-Factor Authentication) with NetScaler. Citrix.com 1 NetScaler is a world-class
More informationCMX Dashboard Visitor Connect
CHAPTER 11 Cisco CMX Visitor Connect is a guest access solution based on Mobility Services Engine (MSE), Cisco Wireless LAN Controller (WLC) and Lightweight Access points (AP). The CMX Visitor Connect
More informationIntegrating AirWatch and VMware Identity Manager
Integrating AirWatch and VMware Identity Manager VMware AirWatch 9.1.1 This document supports the version of each product listed and supports all subsequent versions until the document is replaced by a
More informationWorkspace ONE UEM Certificate Authentication for Cisco IPSec VPN. VMware Workspace ONE UEM 1810
Workspace ONE UEM Certificate Authentication for Cisco IPSec VPN VMware Workspace ONE UEM 1810 You can find the most up-to-date technical documentation on the VMware website at: https://docs.vmware.com/
More informationAirWatch Mobile Device Management
RSA Ready Implementation Guide for 3rd Party PKI Applications Last Modified: November 26 th, 2014 Partner Information Product Information Partner Name Web Site Product Name Version & Platform Product Description
More informationSophos Mobile. startup guide. Product Version: 8.1
Sophos Mobile startup guide Product Version: 8.1 Contents About this guide... 1 Sophos Mobile licenses... 2 Trial licenses...2 Upgrade trial licenses to full licenses... 2 Update licenses... 2 What are
More informationRealms and Identity Policies
The following topics describe realms and identity policies: Introduction:, page 1 Creating a Realm, page 5 Creating an Identity Policy, page 11 Creating an Identity Rule, page 15 Managing Realms, page
More informationGuide to Deploying VMware Workspace ONE. VMware Identity Manager VMware AirWatch 9.1
Guide to Deploying VMware Workspace ONE VMware Identity Manager 2.9.1 VMware AirWatch 9.1 Guide to Deploying VMware Workspace ONE You can find the most up-to-date technical documentation on the VMware
More informationVMware Workspace ONE Quick Configuration Guide. VMware AirWatch 9.1
VMware Workspace ONE Quick Configuration Guide VMware AirWatch 9.1 A P R I L 2 0 1 7 V 2 Revision Table The following table lists revisions to this guide since the April 2017 release Date April 2017 June
More informationApplication Example (Standalone EAP)
Application Example (Standalone EAP) CHAPTERS 1. Determine the Network Requirements 2. Build the Network Topology 3. Log In to the EAP 4. Configure the EAP 5. Test the Network This guide applies to: EAP225-Outdoor
More informationGuide to Deploying VMware Workspace ONE. DEC 2017 VMware AirWatch 9.2 VMware Identity Manager 3.1
Guide to Deploying VMware Workspace ONE DEC 2017 VMware AirWatch 9.2 VMware Identity Manager 3.1 You can find the most up-to-date technical documentation on the VMware website at: https://docs.vmware.com/
More informationQuick Install & Troubleshooting Guide. WAP223NC Cloud Managed Wireless N Access Point
Quick Install & Troubleshooting Guide WAP223NC Cloud Managed Wireless N Access Point Package Contents 1 x WAP223NC Indoor access point powered by CloudCommand 1 x wall and ceiling mounts 1 x 24V PoE power
More informationFireware-Essentials. Number: Fireware Essentials Passing Score: 800 Time Limit: 120 min File Version: 7.
Fireware-Essentials Number: Fireware Essentials Passing Score: 800 Time Limit: 120 min File Version: 7.0 http://www.gratisexam.com/ Fireware Essentials Fireware Essentials Exam Exam A QUESTION 1 Which
More informationAruba Central Guest Access Application
Aruba Central Guest Access Application User Guide Copyright Information Copyright 2017Hewlett Packard Enterprise Development LP. Open Source Code This product includes code licensed under the GNU General
More informationQuick Start Guide. WatchGuard XCS Platform Appliance Models: 170, 370, 570, 770, and 770R. Guide de démarrage rapide Kurzanleitung Guida introduttiva
WatchGuard XCS Platform Appliance Models: 170, 370, 570, 770, and 770R Quick Start Guide Guide de démarrage rapide Kurzanleitung Guida introduttiva Guía Rápida WatchGuard Technologies, Inc. XCS_170_370_570_770_770R_QSG_FINAL_0110110.indd
More informationPEAP under Unified Wireless Networks with ACS 5.1 and Windows 2003 Server
PEAP under Unified Wireless Networks with ACS 5.1 and Windows 2003 Server Document ID: 112175 Contents Introduction Prerequisites Requirements Components Used Conventions Configure Network Diagram Windows
More informationVMware Identity Manager Connector Installation and Configuration (Legacy Mode)
VMware Identity Manager Connector Installation and Configuration (Legacy Mode) VMware Identity Manager This document supports the version of each product listed and supports all subsequent versions until
More informationWhat Is Wireless Setup
What Is Wireless Setup Wireless Setup provides an easy way to set up wireless flows for 802.1x, guest, and BYOD. It also provides workflows to configure and customize each portal for guest and BYOD, where
More informationSophos Mobile. startup guide. Product Version: 8.5
Sophos Mobile startup guide Product Version: 8.5 Contents About this guide... 1 Sophos Mobile licenses... 2 Trial licenses...2 Upgrade trial licenses to full licenses... 2 Update licenses... 2 What are
More informationWhat s New in Fireware v12.3 WatchGuard Training
What s New in Fireware v12.3 2 What s New in Fireware v12.3 Updates to Networking functionality: SD-WAN actions SD-WAN reporting enhancements NetFlow support Link monitor enhancements Centralized FireCluster
More informationWAP9112/9114 Quick Start Guide
WAP9112/9114 Quick Start Guide Release 7.6 NN47252-308 Issue 02.01 March 2016 Contents Chapter 1: Introduction... 3 Chapter 2: Required Software Components... 4 Chapter 3: Installing or Upgrading Wireless
More informationInstalling and Configuring vcloud Connector
Installing and Configuring vcloud Connector vcloud Connector 2.6.0 This document supports the version of each product listed and supports all subsequent versions until the document is replaced by a new
More information4TRESS FT2011 Out-of-Band Authentication and Juniper Secure Access
4TRESS FT2011 Out-of-Band Authentication and Juniper Secure Access RADIUS Channel Integration Handbook Document Version 2.2 Released May 2013 hidglobal.com Table of Contents List of Figures... 3 1.0 Introduction...
More informationActivIdentity 4TRESS AAA Web Tokens and F5 BIG-IP Access Policy Manager. Integration Handbook
ActivIdentity 4TRESS AAA Web Tokens and F5 BIG-IP Access Policy Manager Integration Handbook Document Version 1.1 Released July 11, 2012 ActivIdentity 4TRESS AAA Web Tokens and F5 APM Integration Handbook
More informationAerohive and IntelliGO End-to-End Security for devices on your network
Aerohive and IntelliGO End-to-End Security for devices on your network Introduction Networks have long used a password to authenticate users and devices. Today, many cyber attacks can be used to capture
More informationAWS Remote Access VPC Bundle
AWS Remote Access VPC Bundle Deployment Guide Last updated: April 11, 2017 Aviatrix Systems, Inc. 411 High Street Palo Alto CA 94301 USA http://www.aviatrix.com Tel: +1 844.262.3100 Page 1 of 12 TABLE
More informationEnabling Microsoft Outlook Calendar Notifications for Meetings Scheduled from the Cisco Unified MeetingPlace End-User Web Interface
Enabling Microsoft Outlook Calendar Notifications for Meetings Scheduled from the Cisco Unified MeetingPlace End-User Web Interface Release 7.1 Revised: March 5, 2013 1:53 pm This document describes the
More informationCreating Wireless Networks
WLANs, page 1 Creating Employee WLANs, page 2 Creating Guest WLANs, page 4 Internal Splash Page for Web Authentication, page 7 Managing WLAN Users, page 9 Adding MAC for Local MAC Filtering on WLANs, page
More informationCisco Cloud Web Security
Cisco Cloud Web Security WSA ment Guide Internal Use Only 1 October 2014 Cisco CWS WSA/WSAv ment Guide Contents Introduction... 1 Cloud ment... 1 Additional Redirect Methods... 1... 2 Verify connection
More informationCisco Secure ACS for Windows v3.2 With PEAP MS CHAPv2 Machine Authentication
Cisco Secure ACS for Windows v3.2 With PEAP MS CHAPv2 Machine Authentication Document ID: 43486 Contents Introduction Prerequisites Requirements Components Used Background Theory Conventions Network Diagram
More informationVMware Identity Manager Cloud Deployment. DEC 2017 VMware AirWatch 9.2 VMware Identity Manager
VMware Identity Manager Cloud Deployment DEC 2017 VMware AirWatch 9.2 VMware Identity Manager You can find the most up-to-date technical documentation on the VMware website at: https://docs.vmware.com/
More informationVMware Identity Manager Cloud Deployment. Modified on 01 OCT 2017 VMware Identity Manager
VMware Identity Manager Cloud Deployment Modified on 01 OCT 2017 VMware Identity Manager You can find the most up-to-date technical documentation on the VMware Web site at: https://docs.vmware.com/ The
More informationGuide to Deploying VMware Workspace ONE with VMware Identity Manager. SEP 2018 VMware Workspace ONE
Guide to Deploying VMware Workspace ONE with VMware Identity Manager SEP 2018 VMware Workspace ONE You can find the most up-to-date technical documentation on the VMware website at: https://docs.vmware.com/
More informationYubico with Centrify for Mac - Deployment Guide
CENTRIFY DEPLOYMENT GUIDE Yubico with Centrify for Mac - Deployment Guide Abstract Centrify provides mobile device management and single sign-on services that you can trust and count on as a critical component
More information4TRESS AAA. Out-of-Band Authentication (SMS) and Juniper Secure Access Integration Handbook. Document Version 2.3 Released May hidglobal.
4TRESS AAA Out-of-Band Authentication (SMS) and Juniper Secure Access Integration Handbook Document Version 2.3 Released May 2013 hidglobal.com Table of Contents List of Figures... 3 1.0 Introduction...
More informationVMware AirWatch Integration with Microsoft ADCS via DCOM
VMware AirWatch Integration with Microsoft ADCS via DCOM For VMware AirWatch Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More informationWatchGuard System Manager Fireware Configuration Guide. WatchGuard Fireware Pro v8.1
WatchGuard System Manager Fireware Configuration Guide WatchGuard Fireware Pro v8.1 Notice to Users Information in this guide is subject to change without notice. Companies, names, and data used in examples
More informationVMware AirWatch Tizen Guide
VMware AirWatch Tizen Guide AirWatch v8.4 and higher Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com. This product is protected
More informationVMware AirWatch Integration with SecureAuth PKI Guide
VMware AirWatch Integration with SecureAuth PKI Guide For VMware AirWatch Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More informationDeploying F5 with Microsoft Active Directory Federation Services
F5 Deployment Guide Deploying F5 with Microsoft Active Directory Federation Services This F5 deployment guide provides detailed information on how to deploy Microsoft Active Directory Federation Services
More informationAndroid Mobile Single Sign-On to VMware Workspace ONE. SEP 2018 VMware Workspace ONE VMware Identity Manager VMware Identity Manager 3.
Android Mobile Single Sign-On to VMware Workspace ONE SEP 2018 VMware Workspace ONE VMware Identity Manager VMware Identity Manager 3.3 You can find the most up-to-date technical documentation on the VMware
More informationVMware AirWatch Integration with RSA PKI Guide
VMware AirWatch Integration with RSA PKI Guide For VMware AirWatch Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com. This product
More informationRuckus SmartCell Gateway. Setup Guide. Published April Version 1.0
Ruckus SmartCell Gateway Setup Guide Published April 2015 - Version 1.0 Disclaimer THIS DOCUMENTATION AND ALL INFORMATION CONTAINED HEREIN ( MATERIAL ) IS PROVIDED FOR GENERAL INFORMATION PURPOSES ONLY.
More informationAPP NOTES Onsight Rugged Smart Camera Wireless Network Configuration
APP NOTES Onsight Rugged Smart Camera Wireless Network Configuration July 2016 Table of Contents 1. Overview... 4 1.1 Onsight Setup Wizard... 4 1.2 Onsight Wireless Manual Setup... 4 1.3 Hotspot Login...
More informationWatchGuard Dimension v2.0 Update 2 Release Notes. Introducing New Dimension Command. Build Number Revision Date 13 August 2015
WatchGuard Dimension v2.0 Update 2 Release Notes Build Number 483146 Revision Date 13 August 2015 On 13 August 2015, WatchGuard released Dimension v2.0 Update 2. This update resolves an issue that caused
More informationForescout. eyeextend for MobileIron. Configuration Guide. Version 1.9
Forescout Version 1.9 Contact Information Forescout Technologies, Inc. 190 West Tasman Drive San Jose, CA 95134 USA https://www.forescout.com/support/ Toll-Free (US): 1.866.377.8771 Tel (Intl): 1.408.213.3191
More informationTechnical Overview of DirectAccess in Windows 7 and Windows Server 2008 R2. Microsoft Windows Family of Operating Systems
Technical Overview of in Windows 7 and Windows Server 2008 R2 Microsoft Windows Family of Operating Systems Published: January 2009 This document supports a preliminary release of a software product that
More informationIntegration Guide. Auvik
Integration Guide Auvik Revised: 27 February 2017 About This Guide Guide Type Documented Integration WatchGuard or a Technology Partner has provided documentation demonstrating integration. Guide Details
More informationVMware AirWatch Content Gateway Guide for Windows
VMware AirWatch Content Gateway Guide for Windows AirWatch v9.1 Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com. This product
More informationIntegration Guide. SafeNet Authentication Service (SAS)
Integration Guide SafeNet Authentication Service (SAS) Revised: 10 June 2016 About This Guide Guide Type Documented Integration WatchGuard or a Technology Partner has provided documentation demonstrating
More informationDeploying F5 with Microsoft Active Directory Federation Services
F5 Deployment Guide Deploying F5 with Microsoft Active Directory Federation Services This F5 deployment guide provides detailed information on how to deploy Microsoft Active Directory Federation Services
More informationCentrify for Dropbox Deployment Guide
CENTRIFY DEPLOYMENT GUIDE Centrify for Dropbox Deployment Guide Abstract Centrify provides mobile device management and single sign-on services that you can trust and count on as a critical component of
More informationApplication Note. Providing Secure Remote Access to Industrial Control Systems Using McAfee Firewall Enterprise (Sidewinder )
Application Note Providing Secure Remote Access to Industrial Control Systems Using McAfee Firewall Enterprise (Sidewinder ) This document describes how to configure McAfee Firewall Enterprise to provide
More informationVMware AirWatch Certificate Authentication for EAS with ADCS
VMware AirWatch Certificate Authentication for EAS with ADCS For VMware AirWatch Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More informationBlackBerry UEM Configuration Guide
BlackBerry UEM Configuration Guide 12.9 2018-11-05Z 2 Contents Getting started... 7 Configuring BlackBerry UEM for the first time... 7 Configuration tasks for managing BlackBerry OS devices... 9 Administrator
More informationCopyright and Trademarks
Copyright and Trademarks Specops Password Reset is a trademark owned by Specops Software. All other trademarks used and mentioned in this document belong to their respective owners. 2 Contents Key Components
More informationConfiguration Guide. BlackBerry UEM. Version 12.9
Configuration Guide BlackBerry UEM Version 12.9 Published: 2018-07-16 SWD-20180713083904821 Contents About this guide... 8 Getting started... 9 Configuring BlackBerry UEM for the first time...9 Configuration
More informationNXC Series. Handbook. NXC Controllers NXC 2500/ Default Login Details. Firmware Version 5.00 Edition 19, 5/
NXC Series NXC 2500/ 5500 NXC Controllers Firmware Version 5.00 Edition 19, 5/2017 Handbook Default Login Details LAN Port IP Address https://192.168.1.1 User Name admin Password 1234 Copyright 2017 ZyXEL
More informationCisco Meraki. Setup Guide. Published April Version 1.0
Cisco Meraki Setup Guide Published April 2015 - Version 1.0 Disclaimer THIS DOCUMENTATION AND ALL INFORMATION CONTAINED HEREIN ( MATERIAL ) IS PROVIDED FOR GENERAL INFORMATION PURPOSES ONLY. GLOBAL REACH
More informationSecure Access Configuration Guide For Wireless Clients
ProCurve Networking Secure Access Configuration Guide For Wireless Clients Secure Access Configuration Guide For Wireless Clients Introduction... 2 Configuration Scenarios... 2 Required Network Services...
More informationAMS Device View Installation Guide. Version 2.0 Installation Guide May 2018
AMS Device View Installation Guide Version 2.0 Installation Guide May 2018 Disclaimer The contents of this publication are presented for informational purposes only, and while every effort has been made
More informationCisco Meraki. Spectralink VIEW Certified Configuration Guide
Spectralink VIEW Certified Configuration Guide Cisco Meraki Meraki Cloud-Controlled APs MR26, MR30H, MR32, MR33, MR34, MR42, MR52, MR53, MR72, MR74, MR84 721-1013-000 Rev: A August 2017 Copyright Notice
More informationUsing SSL to Secure Client/Server Connections
Using SSL to Secure Client/Server Connections Using SSL to Secure Client/Server Connections, page 1 Using SSL to Secure Client/Server Connections Introduction This chapter contains information on creating
More informationVMware AirWatch Certificate Authentication for EAS with NDES-MSCEP
VMware AirWatch Certificate Authentication for EAS with NDES-MSCEP For VMware AirWatch Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More informationHySecure Quick Start Guide. HySecure 5.0
HySecure Quick Start Guide HySecure 5.0 Last Updated: 25 May 2017 2012-2017 Propalms Technologies Private Limited. All rights reserved. The information contained in this document represents the current
More informationHPE IMC UAM BYOD Quick Deployment on Mobile Device Configuration Examples
HPE IMC UAM BYOD Quick Deployment on Mobile Device Configuration Examples Part Number: 5200-1387 Software version: IMC UAM 7.2 (E0403) Document version: 2 The information in this document is subject to
More informationSophos Mobile. super administrator guide. product version: 8.6
Sophos Mobile super administrator guide product version: 8.6 Contents About this guide... 1 Document conventions... 1 Super administrator... 2 Super administrator tasks...2 Super administrator customer...
More informationVMware AirWatch Content Gateway Guide for Windows
VMware AirWatch Content Gateway Guide for Windows Workspace ONE UEM v1810 Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More informationSophos Mobile. super administrator guide. Product Version: 8
Sophos Mobile super administrator guide Product Version: 8 Contents About this guide... 1 Document conventions... 1 Super administrator... 2 Super administrator tasks...2 Super administrator customer...
More informationBYOD: BRING YOUR OWN DEVICE.
white paper BYOD: BRING YOUR OWN DEVICE. On-BOaRDING and Securing DEVICES IN YOUR Corporate NetWORk PrepaRING YOUR NetWORk to MEEt DEVICE DEMaND The proliferation of smartphones and tablets brings increased
More informationLevelOne. Quick Installation Guide. WHG series Secure WLAN Controller. Introduction. Getting Started. Hardware Installation
Introduction LevelOne WHG series Secure WLAN Controller LevelOne Secure WLAN Controller is the most advanced yet simple deployment and cost-effective wireless solution; it is an ideal security solution
More informationVMware AirWatch Content Gateway Guide for Linux For Linux
VMware AirWatch Content Gateway Guide for Linux For Linux Workspace ONE UEM v9.7 Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More informationVMware AirWatch Integration with OpenTrust CMS Mobile 2.0
VMware AirWatch Integration with OpenTrust CMS Mobile 2.0 For VMware AirWatch Have documentation feedback? Submit a Documentation Feedback support ticket using the Support Wizard on support.air-watch.com.
More information