Steel-Belted RADIUS. Digipass Plug-In for SBR. SBR Plug-In SBR. G etting Started

Size: px
Start display at page:

Download "Steel-Belted RADIUS. Digipass Plug-In for SBR. SBR Plug-In SBR. G etting Started"

Transcription

1 Steel-Belted RADIUS Digipass Plug-In for SBR SBR Plug-In SBR Steel-Belted RADIUS G etting Started

2 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or conditions, express or implied, including but not limited to warranties of merchantable quality, merchantability of fitness for a particular purpose, or those arising by law, statute, usage of trade or course of dealing. The entire risk as to the results and performance of the product is assumed by you. Neither we nor our dealers or suppliers shall have any liability to you or any other person or entity for any indirect, incidental, special or consequential damages whatsoever, including but not limited to loss of revenue or profit, lost or damaged data of other commercial or economic loss, even if we have been advised of the possibility of such damages or they are foreseeable; or for claims by a third party. Our maximum aggregate liability to you, and that of our dealers and suppliers shall not exceed the amount paid by you for the Product. The limitations in this section shall apply whether or not the alleged breach or default is a breach of a fundamental condition or term, or a fundamental breach. Some states/countries do not allow the exclusion or limitation or liability for consequential or incidental damages so the above limitation may not apply to you. Copyright All rights reserved. No part of this publication may be reproduced, stored in a retrieval system, or transmitted, in any form or by any means, electronic, mechanical, photocopying, recording, or otherwise, without the prior written permission of VASCO Data Security Inc. Trademarks VACMAN and Digipass are registered trademarks of VASCO Data Security International Inc. Microsoft and Windows are registered trademarks of Microsoft Corporation. All other trademarks are the property of their respective holders. ii

3 Table of Contents Table of Contents 1 Introduction What You Need to Know/Have before Starting System Requirements Requirements Specific to Active Directory Requirements Specific to ODBC Database Available Reference Guides Initial Setup and Testing Basic Procedure Install the RADIUS Client Simulator Configure Steel-Belted RADIUS Requirements Configure Authentication Policies Create a RADIUS Profile Create a Native User account Configure Logging Restart the SBR Service Test Native User Login Database Changes Active Directory SSL Install the Digipass Plug-In for SBR Configure the SBR Plug-In Configure Steel-Belted RADIUS to Use Plug-In Log in to Administration Interfaces Administration MMC Interface Active Directory Users and Computers Set up Policy and Component Test Windows Password Login Import and Assign Digipass Records Import Digipass Records Assign Digipass Record(s) Modify Settings for Digipass logins Policy Settings Test Digipass Login Test Logins Test Pre-requisites Configure Authentication Method Local Authentication Only Back-End Authentication Only Local and Back-End Authentication Configure Login Methods Response Only Step Challenge/Response Configure Protocol

4 Table of Contents Open the RADIUS Client Simulator Test Logins RADIUS Attributes RADIUS Profile Add Attributes to SBR RADIUS Profile SBR Plug-In Configuration...25 Set RADIUS Profile in Digipass User account...26 Test RADIUS Profile Login User Attributes SBR Plug-In Configuration...27 Add Attributes to a Digipass User account Test RADIUS Attributes Login Test Management Features Auto-Assignment Self-Assignment Demo Tokens Obtaining a Demo Digipass Using the Demo Go 1 or Go Activating the Demo Go 1/Go Obtaining a One Time Password Changing the Demo Go 1/Go 3 Server PIN Using the Demo DP Activate the Demo DP Change the PIN Auto-Off Function Unlock the Demo DP Set up Live System Checklist...38 Modify NAS Configuration Test Native User Login...38 Import More Digipass Create Digipass User Accounts Create New Policy...38 Create Component Record for NAS Test Digipass Logins

5 Introduction 1 Introduction This Getting Started Guide will introduce you to the Digipass Plug-In for SBR. It will help you set up a basic installation of the Digipass Plug-In for SBR and get to know the product and the tools it includes. It covers only basic information and the most common configuration requirements. Other options and more in-depth instructions are covered in other manuals. This guide covers a standard implementation of the Digipass Plug-In for SBR: Windows environment Typical installation: SBR Plug-In Active Directory or an ODBC database used as the data store Administration MMC Interface Digipass Extension for Active Directory Users and Computers (if Active Directory is used as the data store) It includes information on: Basic configuration of the Digipass Plug-In for SBR Testing This guide does not cover topics such as: Installation instructions Detailed introduction to the Digipass Plug-In for SBR, its features and components Detailed instructions on the use of the Digipass Plug-In for SBR Additional components Virtual Digipass Backup and recovery 5

6 Introduction 1.1 What You Need to Know/Have before Starting DPX file (unless you will only use the provided demo Digipass files) Encryption Key for the DPX file (if using your own file) Installation Guide 1.2 System Requirements SBR Plug-In Steel-Belted RADIUS 5.0 or greater Operating System Windows Server 2003 (32-bit version only), or Windows XP Professional (32-bit version only) with Service Pack 1 or above, or Windows 2000 with Service Pack 4 or above Language The Digipass Plug-In for SBR is designed to function on any language version of Windows. However, the product has only been comprehensively tested on English language versions of Windows, with some additional German language testing Requirements Specific to Active Directory Digipass Extension for Active Directory Users and Computers Active Directory Users and Computers Snap-In Active Directory set up for SSL In the following cases, SSL must be available for Digipass Plug-In for SBR components to connect to Active Directory: SBR Plug-In not installed on a Domain Controller. Administration Interfaces not installed on a Domain Controller. SBR Plug-In and/or Administration Interface(s) on a Domain Controller, but accessing data in another domain. An Enterprise Certificate Authority must be installed in the forest to enable SSL. Windows Certificate Services is available as an optional Windows component Requirements Specific to ODBC Database The Digipass Plug-In for SBR will support most modern ODBC-compliant relational, transactional databases. It has been tested on the following databases: Oracle 9i Microsoft SQL Server 2000 DB2 8.1 Sybase Adaptive Server Anywhere 9.0 PostgreSQL 8.1 6

7 Introduction 1.3 Available Reference Guides Reference Guides are available: Product Guide The Product Guide will introduce you to the features of this product and the various options you have for using it. It also highlights decisions which you should consider and make before setting up a live installation of the product. Installation Guide Use this guide when planning and working through an installation of the product. Getting Started To get you up and running quickly with a simple installation and setup of the product. Administrator Reference In-depth information required for administration of the product. Data Migration Tool Guide This Guide will take you through a data migration from one VASCO product to another, using the VASCO Data Migration Tool. Help Files Accompany various utilities and the administration interfaces. 7

8 Initial Setup and Testing 2 Initial Setup and Testing 2.1 Basic Procedure The diagram below illustrates the basic procedure which this Guide will take you through in the initial setup and tests for the Digipass Plug-In for SBR. At various points in the process, test logins are recommended to ensure that the previous steps have not caused unexpected problems. This also helps in troubleshooting, as it helps to pinpoint where in the process a problem occurred. 8

9 Initial Setup and Testing Image 1: Basic Setup Procedure 9

10 Initial Setup and Testing 2.2 Install the RADIUS Client Simulator Install the RADIUS Client Simulator on a machine: 1. Locate and run the VACMAN RADIUS Client Simulator Setup.exe. 2. Follow the prompts until the installation is complete. If you chose the default install location, the Simulator will be installed to the C:\Program Files\VASCO\VACMAN RADIUS Client Simulator directory. 3. Launch the Simulator from the Start menu. 10

11 Initial Setup and Testing 2.3 Configure Steel-Belted RADIUS If SBR is newly-installed, there are some steps you will need to follow in order to get the SBR Plug-In working with SBR. The diagram below shows the basic process involved. For help in completing each of these steps, see the relevant sub-section. Image 2: SBR Setup Requirements To complete the recommended steps, you will need SBR Administrator installed, with an established connection to the SBR server and an administrator login. Create RADIUS Client record Create a RADIUS Client record within SBR for the machine on which the RADIUS Client Simulator will be running: 1. Right-click on RADIUS Clients. 2. Click on Add. 3. Fill in the required information. 4. Click on OK. 11

12 Initial Setup and Testing Configure Authentication Policies Configure the Authentication Policies in SBR for use with the SBR Plug-In: 1. Click on Authentication Policies. 2. Ensure that Native User is ticked, and at the top of the list. 3. Untick all other Authentication Methods listed. 4. Click on Apply. 5. If you will be testing with the EAP-MD5 protocol: a. Select Native User. b. Click on EAP Setup... c. Tick MD5-Challenge. d. Click on Save Create a RADIUS Profile 1. Click on Profiles. 2. Click on Add. 3. Enter VASCOGettingStarted in the Name field. 4. Enter a description for the Profile. 5. Click on the Return List tab. 6. Click on Add. 7. Select Reply-Message from the Attributes list box. 8. Enter a message string eg. Getting Started Reply. 9. Click on Add. 10. Click on Close. 11. Click on OK Create a Native User account 1. Click on Users. 2. Click on Add. 3. Enter a name, description and password for the User account. 4. Select the Profile created in the previous section (2.3.3 Create a RADIUS Profile) from the Use Profile drop down list. 12

13 Initial Setup and Testing 5. Click on the Return List tab. 6. Click on Add. 7. Select Callback-Number from the Attributes list box. 8. Enter a number in the String field. 9. Click on Add. 10. Click on Close. 11. Click on OK Configure Logging 1. Open the radius.ini file for Steel-Belted RADIUS. This can be found in the <install directory>\service folder. 2. Change the LogLevel setting to Change the TraceLevel setting to Save and close the file Restart the SBR Service 1. Go to your Windows desktop. 2. Right-click on the My Computer icon. 3. Select Manage from the right-click menu. 4. Double-click on Services and Applications. 5. Click on Services. 6. Find and right-click on Steel-Belted RADIUS in the Services list. 7. Click on Restart. 2.4 Test Native User Login Once SBR has been set up, attempt a login through the RADIUS Client Simulator using the Native User account set up earlier in SBR Administrator. 1. Open the RADIUS Client Simulator. 2. Enter the IP address of the SBR server. 3. Enter Authentication and Accounting port numbers if they vary from the default. 4. Enter the Shared Secret you entered for the RADIUS Client created earlier (2.3.1 Create RADIUS Client record). 13

14 Initial Setup and Testing 5. Select a protocol to use. 6. Click on any port icon to attempt a login. 7. Enter the User ID and password for the Native User account created earlier (2.3.4 Create a Native User account). 8. Click on Login. The Profile and User attributes created earlier should be displayed as Returned RADIUS attributes. 2.5 Database Changes Extend the Active Directory Schema or ODBC database structure according to the instructions in the Installation Guide. 2.6 Active Directory SSL Set up SSL if required. See the Pre-installation Tasks section of the Installation Guide for more information. 2.7 Install the Digipass Plug-In for SBR Install the Digipass Plug-In for SBR according to the instructions in the Installation Guide. Some settings which are created automatically for the SBR Plug-In are: Example Policies. A Component for the SBR Plug-In, which will point to a default Policy. Permissions within Active Directory for the SBR Plug-In (if required). 2.8 Configure the SBR Plug-In When the install process for the Digipass Pack is completed, the SBR Plug-In Configuration Interface can be used to configure the system for familiarising yourself with the product. In particular, these should be configured: Configure auditing log to a text file or to the Windows Event Log. The Windows Event log is recommended while getting familiar with the product. Enable tracing, if desired. Check that the SBR Plug-In is enabled. 2.9 Configure Steel-Belted RADIUS to Use Plug-In 1. Open the SBR Administrator. 14

15 Initial Setup and Testing 2. Click on Authentication Policies. 3. Select Digipass Authentication. 4. Use the arrow buttons to move Digipass Authentication to the top of the list box. 5. Tick the Active checkbox for Digipass Authentication. 6. Untick all other Authentication Methods. 7. Click on Apply Log in to Administration Interfaces Administration MMC Interface The Administration MMC Interface is a standalone MMC snap-in that can be used to administer data for the SBR Plug-In. Active Directory If Active Directory is used as the data store, the Administration MMC Interface can be used for administration of Policies and Components. The Digipass Extension for Active Directory Users and Computers Snap-In is used for other Digipass-related data. 1. Select Programs -> VASCO -> Digipass Plug-In for SBR -> Administration MMC Interface from the Start menu. 2. Expand the Digipass Administration node. 3. Right-click on the domain node. 4. Select Connect from the list. ODBC or Embedded Database If an ODBC database (including the embedded PostgreSQL database) is used as the data store, the Administration MMC Interface can be used for administration of all Digipass-related data. 1. Select Programs -> VASCO -> Digipass Plug-In for SBR -> Administration MMC Interface from the Start menu. 2. Expand the Digipass Administration node. 3. Right-click on the DSN. 4. Select Connect from the list. 5. Enter the User ID and password for a database administrator. If you are using the embedded PostgreSQL database, this will be: a. UserID: digipass b. Password: digipassword 15

16 Initial Setup and Testing 6. Click on OK Active Directory Users and Computers The Digipass Extension for Active Directory Users and Computers can be used to administer Digipass and Digipass User accounts when Active Directory is used as the data store. 1. Open the Active Directory Users and Computers Snap-In. 16

17 Initial Setup and Testing 2.11 Set up Policy and Component Ensure that the SBR Plug-In Component is pointed to a Policy which has the Back-end Authentication set to Windows and Local Authentication disabled. To modify these settings for a Policy: 1. Open the Administration MMC Interface. 2. Click on the Policies node. The Policies list will be displayed in the Result pane. 3. Right-click on the Policy SBR Base Policy. 4. Select Copy Policy Enter the name SBR GettingStarted for the Policy. 6. Click on OK to create the Policy. 7. Double-click on the SBR GettingStarted Policy. The Policy property sheet will be displayed. 8. Click on the Main Settings tab. 9. Check these drop down lists: a. Local Auth. should be set to None. b. Back-end Auth. should be set to Always. c. Back-end Protocol should be set to Windows. To ensure that the SBR Plug-In Component will use the correct Policy: 1. Click on the Components node. The Components list will be displayed in the Result pane. 2. Double-click on the SBR Plug-In Component. The Component property sheet will be displayed. 3. Ensure that the SBR GettingStarted Policy is selected in the Policy drop down list. 4. Click on OK. 5. Restart the Steel-Belted RADIUS service Test Windows Password Login For this step, you will need an active Windows User account. Do not choose the same User ID and password as a Native User account in SBR. 17

18 Initial Setup and Testing Use the RADIUS Client Simulator to attempt a login (using Windows User ID and Password) with the User account. This is to check that the installation and configuration of the SBR PlugIn has been successful at this point. Note Windows Authentication is only supported by the SBR Plug-In using the PAP protocol, unless the User ID and password are manually added to the SBR Plug-In and Stored Password Proxy is enabled. Therefore, only simulated logins using the PAP protocol will be successful at this point in the testing process. 1. Open the RADIUS Client Simulator. 2. Click on any port in the Simulated NAS Ports group to display the Manual Simulation window. 3. Enter the User ID for the Windows User account in the User ID field. 4. Enter the password for the Windows User account in the Password field. 5. Click on the Login button. 6. The Status information field will indicate the success or failure of your login. 18

19 Initial Setup and Testing 2.13 Import and Assign Digipass Records Import Digipass Records Digipass records must be imported into the data store before they can be assigned to User accounts. Active Directory To import Digipass records: 1. Open the Active Directory Users and Computers interface. 2. Right-click on the container or Organizational Unit where the test user account is located. 3. Click on Import Digipass Enter or browse for the import path and filename for the DPX file. 5. Enter the encryption key this is for the installed demo Digipass DPX files. 6. Click on Import All Applications. OR a. Click on Show Applications. b. Select the Digipass Applications to import. c. Click on Import Selected Applications. ODBC Database To import Digipass records: 1. Open the Administration MMC Interface. 2. Right-click on the Digipass node. 3. Click on Import Digipass Enter or browse for the import path and filename for the DPX file. 5. Enter the encryption key this is for the installed demo Digipass DPX files. 6. Click on Import All Applications. OR a. Click on Show Applications. b. Select the Digipass Applications to import. 19

20 c. Initial Setup and Testing Click on Import Selected Applications Assign Digipass Record(s) Before a User can use a Digipass to login, the Digipass must be assigned to their User account within the data store. Active Directory To assign a Digipass record to a User account: 1. Open the Active Directory Users and Computers Snap-In. 2. Select the User account to be assigned a Digipass. 3. Right-click on the record and select Assign Digipass Select the Digipass record to be assigned to the User account. 5. Click on OK. This procedure will create a Digipass User account for an Active Directory User if one did not previously exist. ODBC Database To assign a Digipass record to a User account: 1. Open the Administration MMC Interface. 2. Click on the Users node. 3. Create the Digipass User account if it does not currently exist for the User. 4. Select the Digipass User account to be assigned a Digipass. 5. Right-click on the record and select Assign Digipass Select the Digipass record to be assigned to the User account. 7. Click on OK. 20

21 Initial Setup and Testing 2.14 Modify Settings for Digipass logins Policy Settings To test Digipass logins, the SBR Plug-In Component should use a Policy which has Local Authentication enabled and Back-end Authentication disabled. To check that a Policy has these settings: 1. Open the Administration MMC Interface. 2. Click on the Policies node. The Policies list will be displayed in the Result pane. 3. Double-click on the SBR GettingStarted Policy. The Policy property sheet will be displayed. 4. Click on the Main Settings tab. 5. Check these drop down lists: a. Local Auth. should be set to Digipass/Password. b. Back-end Auth. should be set to None. To ensure that the SBR Plug-In Component will use the correct Policy: 1. Click on the Components node. The Components list will be displayed in the Result pane. 2. Double-click on the SBR Plug-In Component. The Component property sheet will be displayed. 3. Ensure that the SBR GettingStarted Policy is selected in the Policy drop down list. 4. Click on OK. 5. Stop and Start the Steel-Belted RADIUS service. 21

22 Initial Setup and Testing Test Digipass Login Use the RADIUS Client Simulator to attempt a Digipass login with a User account which has a Digipass assigned. This is to check that the SBR Plug-In has been configured correctly for authenticating Digipass logins. If you are unsure how to use the Digipass, see the Demo Tokens section. 1. Open the RADIUS Client Simulator. 2. Click on any port in the Simulated NAS Ports group to display the Manual Simulation window. 3. Enter the User ID for the User account you are using for test logins in the User ID field. 4. Enter the One Time Password generated by the Digipass in the Password field. 5. Click on the Login button. 6. The Status information field will indicate the success or failure of your login. 22

23 Test Logins 3 Test Logins Using the User account to which you assigned a Digipass, and the Digipass, you can test the various authentication methods, login methods and protocols needed. You may wish to try various combinations of authentication method, login method and protocol, or simply the combination required for your system. 3.1 Test Pre-requisites If you are going to test all types of login methods available, you will need: A Digipass User account to test logins with - this can be the same one as in previous tests. A Digipass or Demo Digipass with Response Only and Challenge/Response Applications. 3.2 Configure Authentication Method Create a Policy for each authentication method required, or use a test Policy such as the SBR GettingStarted Policy created in the previous section - which can be modified as desired. Note After changing the Policy or Component, stop and start the Steel-Belted RADIUS service. This ensures that the new settings will take effect immediately Local Authentication Only Local authentication means that only the SBR Plug-In will authenticate a login. The recommended Policy settings for Local Authentication tests are: Local Auth. should be set to Digipass/Password. Back-end Auth. should be set to None Back-End Authentication Only Back-end authentication means that only Windows will authenticate a login. The recommended Policy settings for Back-end Authentication tests are: Local Auth. should be set to None. Back-End Auth. should be set to Always. Back-End Protocol must be set to Windows. 23

24 Test Logins Local and Back-End Authentication Local and back-end authentication means that both the SBR Plug-In and Windows will authenticate a login. The recommended Policy settings for Local and Back-end Authentication tests are: Local Auth. should be set to Digipass/Password. Back-End Auth. should be set to Always. Back-End Protocol must be set to Windows. 3.3 Configure Login Methods Response Only To configure a Policy to allow Response Only logins: 1. Open the Policy property sheet. 2. Click on the Digipass Settings tab. 3. Check that No Restriction or Response Only is selected from the Application Type drop down list. 4. Click on OK Step Challenge/Response 1. Open the Policy property sheet. 2. Click on the Digipass Settings tab. 3. Check that No Restriction or Challenge/Response is selected from the Application Type drop down list. 4. Click on Apply. 5. Click on the Challenge Settings tab. 6. Select Keyword from the 2-step Challenge/Response Request Method drop down list. 7. Enter a Keyword to use (eg. '2stepCR') in the Keyword field. You can leave this field blank, so that an empty password can be used to get a challenge. 8. Click on OK. 24

25 Test Logins 3.4 Configure Protocol Open the RADIUS Client Simulator. 1. Check that the Protocol drop down list is set to the protocol you wish to implement (eg. CHAP, MS-CHAP, MS-CHAP2). 3.5 Test Logins 1. Configure a Policy for the authentication method, login method and protocol to be tested. 2. Ensure that the SBR Plug-In Component is using the configured Policy. In the RADIUS Client Simulator: 3. Click on any port in the Simulated NAS Ports group to display the Manual Simulation window. 4. Enter the User ID for the User account you are using for test logins in the User ID field. 5. Enter the password for the User account and an OTP from the Digipass in the Password field. 6. Click on the Login button. 7. The Status information field will indicate the success or failure of your logon. 3.6 RADIUS Attributes Using the SBR Plug-In, there are two ways in which RADIUS attributes can be returned during a login: RADIUS Profile in SBR Individual User attributes Examples of adding RADIUS attributes are documented below RADIUS Profile Note The RADIUS Profile(s) used in the SBR Plug-In must exist in SBR. If SBR cannot find a listed Profile, it will fail the authentication request Add Attributes to SBR RADIUS Profile The desired test attributes should be added to the VASCOGettingStarted Profile created earlier (2.3.3 Create a RADIUS Profile). An example, using MPPE keys, is shown below. 25

26 Test Logins MPPE Keys If you are testing MS-CHAP or MS-CHAPv2 protocol and need to have MPPE keys returned, follow these steps: 1. Open the SBR Administrator. 2. Click on Profiles. 3. Double-click on the VASCOGettingStarted Profile you created earlier (2.3.3 Create a RADIUS Profile). 4. Click on the Return List tab. 5. Click on Add. MS-CHAPv2 Only 6. Select MS-MPPE-Encryption-Policy from the Attributes list box. 7. Select Encryption-Allowed from the Values list box. 8. Click on Add. 9. Select MS-MPPE-Encryption-Type from the Attributes list box. 10. Type into the Hexadecimal value field. 11. Click on Add. 12. Click on Close. MS-CHAP Only 6. Select MS-CHAP-MPPE-Keys from the Attributes list box. 7. Click on Add. 8. Click on Close SBR Plug-In Configuration The following configuration settings tell the SBR Plug-In to look for the RADIUS Attribute Group and SBR Profile Attribute Name in attribute settings for a Digipass User account. This allows different SBR Plug-Ins to use different RADIUS Profiles and user attributes for the same Digipass User account. 1. Open the SBR Plug-In Configuration. 2. Enter RADIUS into the Attribute Group field. 3. Enter SBR into the Profile Attribute Name field. 4. Click on Apply. 26

27 Test Logins Set RADIUS Profile in Digipass User account Once the VASCOGettingStarted Profile is configured with the required attributes, the test Digipass User account must be modified to use it. 1. Open the User property sheet in the Administration MMC Interface (ODBC database) or Active Directory Users and Computers (Active Directory). 2. Click on the Digipass User Account tab. 3. Click on the Authorization Profiles/Attributes button. 4. Click on Add Enter RADIUS in the Attribute Group field. 6. Enter SBR in the Name field. 7. Select Profile from the Usage drop down list. 8. Enter VASCOGETTINGSTARTED in the Value field. 9. Click on OK. 10. Click on Close Test RADIUS Profile Login Using the RADIUS Client Simulator, attempt a Digipass login using the Digipass User configured above. Check that the expected RADIUS Profile attributes were returned User Attributes Individual user attributes may also be added to a Digipass User account. Note The attributes listed in the SBR Plug-In must exist in dictionaries loaded in SBR. If SBR cannot find a listed attribute, it will fail the authentication request. 27

28 Test Logins SBR Plug-In Configuration The SBR Plug-In must be configured to make use of individual user attributes. 1. Open the SBR Plug-In Configuration. 2. Tick the Set User Attributes checkbox. 3. Click on OK Add Attributes to a Digipass User account If an individual attribute such as Callback-Number must be returned for a Digipass User: 1. Open the User property sheet in the Administration MMC Interface (ODBC database) or Active Directory Users and Computers (Active Directory). 2. Click on the Digipass User Account tab. 3. Click on the Authorization Profiles/Attributes button. 4. Enter RADIUS in the Attribute Group field. 5. Enter Callback-Number in the Name field. 6. Select Return from the Usage drop down list. 7. Enter a phone number in the Value field. 8. Click on OK. 9. Click on Close Test RADIUS Attributes Login Using the RADIUS Client Simulator, attempt a Digipass login using the Digipass User configured above. Check that the expected RADIUS Profile and user attributes were returned. 28

29 Test Management Features 4 Test Management Features 4.1 Auto-Assignment Initial Setup 1. Open the Administration MMC Interface. 2. Click on the Components node. The Components list will be displayed in the Result pane. 3. Double-click on the SBR Plug-In Component. The Component property sheet will be displayed. 4. Ensure that the SBR Base Policy is selected in the Policy drop down list. 5. Click on OK. 6. Stop and Start the Steel-Belted RADIUS service. 7. Create or use a Windows User account which does not currently have a Digipass User account. 8. Check that at least one unassigned Digipass is available in either: the same Organizational Unit, a parent Organizational Unit, or the Digipass-Pool Container (Active Directory) or the domain root (ODBC). If one of the latter two options, ensure that the Search Upwards in Organizational Unit hierarchy option is enabled for the SBR Base Policy. Test Auto-Assignment - 1 In the following test, both Dynamic User Registration and Auto-Assignment should fail, meaning that a Digipass User account will not be created, and a Digipass will not be assigned to the User. In the RADIUS Client Simulator: 9. Click on any port in the Simulated NAS Ports group to display the Manual Simulation window. 10. Enter the User ID for the Windows User account you created earlier (step 7) in the User ID field. 11. Enter the password for the Windows User account. 12. Click on the Login button. The Status information field will indicate the success or failure of your logon. 29

30 Test Management Features Check Test Results To check whether a Digipass User account has been created for the User: Active Directory 13. Open the Active Directory Users and Computers Snap-In 14. Find the User account record and right-click on it. 15. Select Properties from the list. The User property sheet will be displayed. 16. Click on the Digipass User Account tab. If the Created On field is blank, a Digipass User account does not exist for the User. ODBC Database 13. Open the Administration MMC Interface. 14. Click on the Digipass Users node. 15. Search for the User ID in the Users list. If the Digipass User account exists in the database, the Dynamic User Registration was successful. Modify Settings 17. Modify the Group Check method in the SBR Windows Auto-Assignment Policy to No check. 18. Modify the SBR Plug-In Component to use the SBR Windows Auto-Assignment Policy. 19. Stop and Start the Steel-Belted RADIUS service. Test Auto-Assignment - 2 In the following test, both Dynamic User Registration and Auto-Assignment should succeed, meaning that a Digipass User account will be created, and an available Digipass will be assigned to the User. In the RADIUS Client Simulator: 20. Click on any port in the Simulated NAS Ports group to display the Manual Simulation window. 21. Enter the User ID for the Windows User account you created earlier (step 7) in the User ID field. 22. Enter the password for the User account. 23. Click on the Login button. 30

31 Test Management Features The Status information field will indicate the success or failure of your logon. Check Test Results To check whether a Digipass User account has been created for the User: 24. Open the Active Directory Users and Computers Snap-In (Active Directory) or the Administration MMC Interface (ODBC). 25. Find the User account record and right-click on it. 26. Select Properties from the list. The User property sheet will be displayed. 27. Click on the Digipass User Account tab. If the Created On field is not blank, a Digipass User account exists for the User. To check whether a Digipass has been assigned to the User: 28. Click on the Digipass Assignment tab. 29. If a Digipass is listed under this tab, the User has been assigned the listed Digipass. 30. Check the Grace Period End field to see that a Grace Period of the correct length (7 days by default) has been set. Check Grace Period Password login 31. Using the RADIUS Client Simulator, attempt a login using the Windows User's User ID and password only. If the Grace Period is still effective, this should be successful. OTP login 32. Using the RADIUS Client Simulator, attempt a login using the Windows User's User ID and One Time Password. This should be successful. Password login 33. Using the RADIUS Client Simulator, attempt a login using the Windows User's User ID and password only. As the OTP login from the previous step should have ended the Grace Period for the Digipass, this login should fail. 34. Check the Grace Period End in the User record. It should contain today's date. 31

32 Test Management Features 4.2 Self-Assignment Initial Setup 1. Open the Administration MMC Interface. 2. Click on the Components node. The Components list will be displayed in the Result pane. 3. Double-click on the SBR Plug-In Component. The Component property sheet will be displayed. 4. Ensure that the SBR Base Policy is selected in the Policy drop down list. 5. Click on OK. 6. Stop and Start the Steel-Belted RADIUS service. 7. Create or use a Windows User account which does not currently have a Digipass User account. 8. Check that the record for the Digipass to be used in the Self-Assignment is available in either: the same Organizational Unit, a parent Organizational Unit, or the Digipass-Pool Container (Active Directory) or the domain root (ODBC). If one of the latter two options, ensure that the Search Upwards in Organizational Unit hierarchy option is enabled for the SBR Base Policy. Test Self-Assignment - 1 In the following test, both Dynamic User Registration and Self-Assignment should fail, meaning that a Digipass User account will not be created, and the selected Digipass will not be assigned to the User. In the RADIUS Client Simulator: 9. Click on any port in the Simulated NAS Ports group to display the Manual Simulation window. 10. Enter the User ID for the Windows User account you created earlier (step 7) in the User ID field. 11. Enter the Serial Number for the Digipass, the Separator, the Windows User's Password, a Server PIN (if required) and a One Time Password from the Digipass into the Password field. eg password (see the Login Permutations topic in the Administrator Reference for more information). 12. Click on the Login button. The Status information field will indicate the success or failure of your logon. 32

33 Test Management Features Check Test Results To check whether a Digipass User account has been created for the User: Active Directory 13. Open the Active Directory Users and Computers Snap-In 14. Find the User account record and right-click on it. 15. Select Properties from the list. The User property sheet will be displayed. 16. Click on the Digipass User Account tab. If the Created On field is blank, a Digipass User account does not exist for the User. ODBC Database 13. Open the Administration MMC Interface. 14. Click on the Digipass Users node. 15. Search for the User ID in the Users list. If the Digipass User account exists in the database, the Dynamic User Registration was successful. Modify Settings 17. Modify the SBR Plug-In Component to use the SBR Windows Self-Assignment Policy. 18. Stop and Start the Steel-Belted RADIUS service. Test Self-Assignment - 2 In the following test, both Dynamic User Registration and Self-Assignment should succeed, meaning that a Digipass User account will be created, and the intended Digipass will be assigned to the User. In the RADIUS Client Simulator: 19. Click on any port in the Simulated NAS Ports group to display the Manual Simulation window. 20. Enter the User ID for the Windows User account you created earlier (step 7) in the User ID field. 21. Enter the Serial Number for the Digipass, the Separator, the Windows User's Password, a Server PIN (if required) and a One Time Password from the Digipass into the Password field. eg password (see the Login Permutations topic in the Administrator Reference for more information). 22. Click on the Login button. 33

34 Test Management Features The Status information field will indicate the success or failure of your logon. Check Test Results To check whether a Digipass User account has been created for the User: 23. Open the Active Directory Users and Computers Snap-In (Active Directory) or the Administration MMC Interface (ODBC). 24. Find the User account record and right-click on it. 25. Select Properties from the list. The User property sheet will be displayed. 26. Click on the Digipass User Account tab. If the Created On field is not blank, a Digipass User account exists for the User. To check whether the Digipass has been assigned to the User: 27. Click on the Digipass Assignment tab. 28. If the Digipass is listed under this tab, it has been assigned to the Digipass User account. Check Grace Period 29. Check that a Grace Period has not been set. Password login 30. Using the RADIUS Client Simulator, attempt a login using the Windows User's User ID and password only. This should fail, as a Grace Period is not set for a Self-Assignment. OTP login 31. Using the RADIUS Client Simulator, attempt a login using the Windows User's User ID and One Time Password. This should be successful. 34

35 Demo Tokens 5 Demo Tokens 5.1 Obtaining a Demo Digipass If you do not have a demo Digipass, you can use a simulated DP300 at The DPX files for the Demo DP300 and Demo Go 1/Go 3 are located in the DPX folder under the Digipass Plug-In for SBR installation directory. 5.2 Using the Demo Go 1 or Go 3 This topic explains the activation and use of the demonstration Go 1 or Go 3 Note The Demo Go 1 and Go 3, and other Go 1/Go 3 tokens, only produce a timebased One Time Password - referred to as a Response. This is referred to as the Response Only authentication method. The Go 1 and Go 3 tokens are used with a PIN, which is entered before the Response Activating the Demo Go 1/Go 3 To turn on the Demo Go 1, slide the Go 1 apart to reveal the LCD screen. To turn on the Demo Go 3, press the button on the token. All Go 1/Go 3 tokens have an auto-off function, meaning that they automatically turn themselves off after short periods of inactivity Obtaining a One Time Password Whenever the Demo Go 1/Go 3 is activated, it produces a 6-digit number on its LCD screen. This response number is generated based on the secret code stored within the token, and the current time. At logon, the Users' Server PIN and the One Time Password from the Go 1/Go 3 should be entered as into the appropriate password field in the logon screen or web page. The Server PIN is initially For example, if the One Time Password generated by the Demo Go 1/Go 3 was , should be entered in the login screen. 35

36 Demo Tokens Changing the Demo Go 1/Go 3 Server PIN The Demo Go 1/Go 3 Server PIN (1234) can be changed during the authentication process. To change the Demo Go 1/Go 3 Server PIN: 1. Go to the login page or screen. 2. In the user ID field, enter the User ID for the account you are using for testing. 3. In the password field, enter the current Server PIN (1234) for the Demo Go 1/Go Activate the Demo Digipass and enter the One Time Password generated in the response field directly after the Server PIN. 5. Next, enter the new PIN for the Demo Go 1/Go 3 after the response in the Response field, then enter it again to confirm it. 6. Submit your login to issue the new Server PIN information to the SBR Plug-In. Example To change the Server PIN for a Demo Digipass from 1234 to 5678, where the OTP generated was , enter: in the password field and login. Any time you login using the Demo or another Go 1/Go 3, you may use this method to change your PIN, except for RADIUS authentications where any form of CHAP is in use (E.g., CHAP, MS-CHAP, MS-CHAP2). This is because the information is one-way hashed and cannot be retrieved from the packet. If CHAP protocols are used, refer to the User Self-Management Web Site Guide for more information about alternative web based methods for PIN change (eg. using your intranet). 5.3 Using the Demo DP300 This topic explains the activation and use of the demonstration DP Activate the Demo DP300 The Demo DP300 is turned on with the < button. Each time the Demo DP300 is activated it will request a 4-digit PIN number (displayed on the LCD screen). The PIN for Demo DP300s is initially set to The Demo Digipass will then prompt you to indicate the application you wish to use: 36

37 Demo Tokens Application 1 : Response only When you press 1 on the keypad, the demo DP300 will produce a 6-digit number. This response number is generated based on the secret code stored within the token, and the current time. The One Time Password displayed should be entered into the appropriate password field in the logon screen or web page. Application 2 : Digital Signature When you press 2 on the keypad, you will be prompted for 3 numbers (typically from an online transaction) comprising up to 5 digits each. When all three numbers required have been entered, a 6-digit number is generated (displayed on the LCD screen). This number is the digital signature for the transaction. This needs to be entered into the appropriate field in the digital signature web page or screen. Note Digital signatures are not currently in use with the SBR Plug-In. Application 3: Challenge / Response When you press 3 on the keypad, the Digipass will present you with four dashes ( ) to indicate that a challenge must be entered. You may have the option of holding the optical reader to the middle of the flash sequence (the white flashing panels) on the logon web page if one is presented. Alternatively, if the challenge number is shown on the screen, you can key it in directly into the keypad. The demo DP300 will then calculate and display a One Time Password based on the challenge and the secret code stored in the DP300. The One Time Password displayed should be entered into the appropriate password field in the logon screen or web page Change the PIN Turn on the Demo DP300 and enter the current PIN to activate the token. Then hold down the On (<) button for 2 seconds, to be prompted for a new PIN. The DP300 will then prompt you to re-enter the new PIN to confirm it. The new PIN can now be used to logon Auto-Off Function To preserve the maximum battery life, the Demo DP300 automatically turns off after 30 seconds of inactivity. 37

38 Demo Tokens Unlock the Demo DP300 If an incorrect PIN is entered into a Demo DP300 too many times (3), the Digipass will lock itself from further use. When a token is locked, it will display an unlock challenge on its LCD screen. Digipass may be unlocked using the Digipass Extension for Active Directory Users and Computers Snap-in (when Active Directory is used as the data store) or the Administration MMC Interface (when ODBC is used as the data store). 38

39 Set up Live System 6 Set up Live System 6.1 Checklist Modify NAS Configuration Configure the Network Access Server to send authentication requests to SBR. Test Native User Login Create a test Native User account in SBR. Open the SBR Administrator, temporarily enable Native User Authentication Policy and disable the Digipass Authentication Plug-In. Test logins through the NAS. Restore the Authentication Methods to their previous settings. Import More Digipass Import all required Digipass records Create Digipass User Accounts If required, manually create Digipass User accounts. Alternatively, enable Dynamic User Registration in the SBR Plug-In. Create New Policy If Policy settings different to those in preset Policies, create a Policy in the Administration MMC Interface for login authentications requested by the NAS. Create Component Record for NAS If needed, create a Component record for the NAS in the Administration MMC Interface. Test Digipass Logins Test Digipass logins through the NAS, using One Time Passwords. 39

Digipass Plug-In for SBR. SBR Plug-In SBR. Steel-Belted RADIUS. Installation G uide

Digipass Plug-In for SBR. SBR Plug-In SBR. Steel-Belted RADIUS. Installation G uide Digipass Plug-In for SBR SBR Plug-In SBR Steel-Belted RADIUS Installation G uide Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product

More information

Modify these field values (right-click and select Fields) to change text throughout the document:

Modify these field values (right-click and select Fields) to change text throughout the document: Modify these field values (right-click and select Fields) to change text throughout the document: NOTE: Diagrams may appear or disappear depending on these field settings so BE CAREFUL adding and removing

More information

Product Guide. Digipass Plug-In for IAS. IAS Plug-In. Digipass Extension for Active Directory Users and Computers. Administration MMC Interface IAS

Product Guide. Digipass Plug-In for IAS. IAS Plug-In. Digipass Extension for Active Directory Users and Computers. Administration MMC Interface IAS Digipass Plug-In for IAS IAS Plug-In Digipass Extension for Active Directory Users and Computers Administration MMC Interface IAS Microsoft's Internet Authentication Service Product Guide Disclaimer of

More information

DIGIPASS Authentication for O2 Succendo

DIGIPASS Authentication for O2 Succendo DIGIPASS Authentication for O2 Succendo for IDENTIKEY Authentication Server IDENTIKEY Appliance 2009 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 30 Disclaimer Disclaimer of

More information

DIGIPASS Authentication for F5 BIG-IP

DIGIPASS Authentication for F5 BIG-IP DIGIPASS Authentication for F5 BIG-IP With VASCO VACMAN Middleware 3.0 2008 VASCO Data Security. All rights reserved. Page 1 of 37 Integration Guideline Disclaimer Disclaimer of Warranties and Limitations

More information

DIGIPASS Authentication for Cisco ASA 5500 Series

DIGIPASS Authentication for Cisco ASA 5500 Series DIGIPASS Authentication for Cisco ASA 5500 Series With Vasco VACMAN Middleware 3.0 2008 VASCO Data Security. All rights reserved. Page 1 of 35 Integration Guideline Disclaimer Disclaimer of Warranties

More information

DIGIPASS Authentication for Check Point VPN-1

DIGIPASS Authentication for Check Point VPN-1 DIGIPASS Authentication for Check Point VPN-1 With Vasco VACMAN Middleware 3.0 2007 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 51 Disclaimer Disclaimer of Warranties and

More information

DIGIPASS Authentication for Citrix Access Essentials Web Interface

DIGIPASS Authentication for Citrix Access Essentials Web Interface DIGIPASS Authentication for Citrix Access Essentials Web Interface With VASCO Digipass Pack for Citrix DIGIPASS Authentication for Citrix Access Essentials - Integration Guideline V1.0 2006 VASCO Data

More information

DIGIPASS CertiID. Installation Guide 3.1.0

DIGIPASS CertiID. Installation Guide 3.1.0 DIGIPASS CertiID Installation Guide 3.1.0 Disclaimer Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or conditions, express

More information

VACMAN Controller. HSM Integration Guide - White Paper. Revision 4.0

VACMAN Controller. HSM Integration Guide - White Paper. Revision 4.0 VACMAN Controller HSM Integration Guide - White Paper Revision 4.0 Disclaimer Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties,

More information

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Sharepoint 2007

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Sharepoint 2007 DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Sharepoint 2007 With IDENTIKEY Server / Axsguard IDENTIFIER Integration Guidelines Disclaimer Disclaimer of Warranties and Limitations

More information

VACMAN, Identikey, axs GUARD and Digipass are registered trademarks of VASCO Data Security International Inc.

VACMAN, Identikey, axs GUARD and Digipass are registered trademarks of VASCO Data Security International Inc. Modify these field values (right-click and select Fields) to change text throughout the document: 2008 Digipass Authentication for OWA 2007 IIS 6 Module Internet Information Services IIS Authentication

More information

axsguard Identifier Product Guide Product Guide axsguard AXSGuard ConfigurationTool

axsguard Identifier Product Guide Product Guide axsguard AXSGuard ConfigurationTool Product Guide axsguard AXSGuard ConfigurationTool 0 2009 Product Guide axsguard Identifier axsguard Identifier axsguard Identifier DIGIPASS ConfigurationTool v1.5 0.1 axsguard Identifier Product Guide

More information

DIGIPASS Authentication for NETASQ

DIGIPASS Authentication for NETASQ DIGIPASS Authentication for NETASQ With IDENTIKEY Server 2010 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 19 Disclaimer Disclaimer of Warranties and Limitations of Liabilities

More information

Digipass Pack for OWA Forms Authentication Guide

Digipass Pack for OWA Forms Authentication Guide Digipass Pack for OWA Forms Authentication Guide Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis,

More information

DIGIPASS Authentication for Check Point VPN-1

DIGIPASS Authentication for Check Point VPN-1 DIGIPASS Authentication for Check Point VPN-1 With IDENTIKEY Server 2009 Integration VASCO Data Security. Guideline All rights reserved. Page 1 of 36 Disclaimer Disclaimer of Warranties and Limitations

More information

NBC-IG Installation Guide. Version 7.2

NBC-IG Installation Guide. Version 7.2 Installation Guide Version 7.2 2017 Nuance Business Connect 7.2 Installation Guide Document Revision History Revision Date August 8, 2017 Revision List Updated supported SQL Server versions June 14, 2017

More information

Deutsche Bank Global Transaction Banking. Digipass 270/276XH. Getting 4 Started.

Deutsche Bank Global Transaction Banking. Digipass 270/276XH. Getting 4 Started. Deutsche Bank Global Transaction Banking Digipass 270/276XH Getting 4 Started www.db.com Contents 1. What is a Digipass 270/276XH 3 2. Prepare your Digipass 4 3. Log-in 5 4. Authorisation with your Digipass

More information

Deutsche Bank Global Transaction Banking. Digipass 270XH. Getting 4 Started.

Deutsche Bank Global Transaction Banking. Digipass 270XH. Getting 4 Started. Deutsche Bank Global Transaction Banking Digipass 270XH Getting 4 Started www.db.com Contents 1. What is a Digipass 270XH 3 2. Prepare your Digipass 4 3. Log-in 5 4. Authorisation with your Digipass 7

More information

NCD ThinPATH PC Installation Guide and Release Notes

NCD ThinPATH PC Installation Guide and Release Notes NCD ThinPATH PC Installation Guide and Release s Copyright Copyright 2001 by Network Computing Devices, Inc. (NCD).The information contained in this document is subject to change without notice. Network

More information

DIGIPASS Authentication for Citrix Web Interface Guide 3.3

DIGIPASS Authentication for Citrix Web Interface Guide 3.3 DIGIPASS Authentication for Citrix Web Interface Guide 3 Disclaimer of Warranties and Limitations of Liabilities Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as

More information

Authentication Services ActiveRoles Integration Pack 2.1.x. Administration Guide

Authentication Services ActiveRoles Integration Pack 2.1.x. Administration Guide Authentication Services ActiveRoles Integration Pack 2.1.x Administration Guide Copyright 2017 One Identity LLC. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright.

More information

System Management Guide Version 7.52

System Management Guide Version 7.52 Sage 500 Budgeting and Planning 2013 System Management Guide Version 7.52 Copyright Trademarks Program copyright 1995-2013 Sage Software, Inc. This work and the computer programs to which it relates are

More information

SecurEnvoy Microsoft Server Agent

SecurEnvoy Microsoft Server Agent SecurEnvoy Microsoft Server Agent SecurEnvoy Global HQ Merlin House, Brunel Road, Theale, Reading. RG7 4TY Tel: 0845 2600010 Fax: 0845 260014 www.securenvoy.com SecurEnvoy Microsoft Server Agent Installation

More information

XcreenKey Verti. User Guide v2.0. Legal Before You Start Using XcreenKey Verti

XcreenKey Verti. User Guide v2.0. Legal Before You Start Using XcreenKey Verti XcreenKey Verti User Guide v2.0 Legal Before You Start Cross-Discipline Technology 2007 Legal Limitation of Liability The XcreenKey Verti software and the accompanying softwares and materials ("SOFT- WARE

More information

Toast Audio Assistant User Guide

Toast Audio Assistant User Guide Toast Audio Assistant User Guide Toast Audio Assistant lets you capture audio from a variety of sources. You can then edit the audio, break it up into tracks, add effects, and export it to itunes or burn

More information

DIGIPASS Authentication to Citrix XenDesktop with endpoint protection

DIGIPASS Authentication to Citrix XenDesktop with endpoint protection DIGIPASS Authentication to Citrix XenDesktop with endpoint protection SmartAccess Configuration with Digipass INTEGRATION GUIDE Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information

More information

Multifactor Authentication Installation and Configuration Guide

Multifactor Authentication Installation and Configuration Guide Multifactor Authentication Installation and Configuration Guide Software Version 5.0.0.0 General Information: info@cionsystems.com Online Support: support@cionsystems.com 2017 CionSystems Inc. ALL RIGHTS

More information

Installation Instructions for SAS Activity-Based Management 6.2

Installation Instructions for SAS Activity-Based Management 6.2 Installation Instructions for SAS Activity-Based Management 6.2 Copyright Notice The correct bibliographic citation for this manual is as follows: SAS Institute Inc., Installation Instructions for SAS

More information

DISCLAIMER COPYRIGHT List of Trademarks

DISCLAIMER COPYRIGHT List of Trademarks DISCLAIMER This documentation is provided for reference purposes only. While efforts were made to verify the completeness and accuracy of the information contained in this documentation, this documentation

More information

DigitalPersona Pro Enterprise

DigitalPersona Pro Enterprise DigitalPersona Pro Enterprise Quick Start Guide Version 5 DATA PROTECTION REMOTE ACCESS SECURE COMMUNICATION STRONG AUTHENTICATION ACCESS RECOVERY SINGLE SIGN-ON DigitalPersona Pro Enterprise DigitalPersona

More information

Restoring data from a backup

Restoring data from a backup Restoring data from a backup The following topics explain how to find a backup to restore and then perform a restore: Finding a backup to restore on page 98 Restoring to the original location on page 101

More information

Authentication Manager Self Service Password Request Administrator s Guide

Authentication Manager Self Service Password Request Administrator s Guide Authentication Manager Self Service Password Request 9.0.2 Copyright 2017 One Identity LLC. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described

More information

How to enable and read the full trace file for IDENTIKEY Authentication Server 3.4, step by step.

How to enable and read the full trace file for IDENTIKEY Authentication Server 3.4, step by step. KB 160032 How to enable and read the full trace file for IDENTIKEY Authentication Server 3.4, step by step. Creation date: 10/09/2013 Last Review: 10/09/2013 Revision number: 2 Document type: How To Security

More information

User Guide. Portable Calibration Module

User Guide. Portable Calibration Module Portable Calibration Module User Guide CyberMetrics Corporation 1523 W. Whispering Wind Drive Suite 100 Phoenix, Arizona 85085 USA Toll-free: 1-800-777-7020 (USA) Phone: (480) 922-7300 Fax: (480) 922-7400

More information

Xerox Security Bulletin XRX12-011

Xerox Security Bulletin XRX12-011 Digital Signature of Software Upgrade Files v1.1 Background The Xerox products listed below were shipped without the ability to accept software upgrade files with digital signatures. The ability to accept

More information

One Identity Quick Connect for Base Systems 2.4. Administrator Guide

One Identity Quick Connect for Base Systems 2.4. Administrator Guide One Identity Quick Connect for Base Systems 2.4 Administrator Copyright 2017 One Identity LLC. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described

More information

TIE1.80InstallationGuideUK

TIE1.80InstallationGuideUK Installation Guide 112206 2006 Blackbaud, Inc. This publication, or any part thereof, may not be reproduced or transmitted in any form or by any means, electronic, or mechanical, including photocopying,

More information

System Management Guide Version 7.4a

System Management Guide Version 7.4a Epicor Active Planner Open Integration System Management Guide Version 7.4a Copyright Trademarks Program copyright 1995-2011 Sage Software, Inc. This work and the computer programs to which it relates

More information

One Identity Active Roles 7.2. User's Guide

One Identity Active Roles 7.2. User's Guide One Identity Active Roles 7.2 User's Guide Copyright 2017 One Identity LLC. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described in this guide

More information

The Connector. Version 1.2 Microsoft Project to Atlassian JIRA Connectivity. User Manual

The Connector.  Version 1.2 Microsoft Project to Atlassian JIRA Connectivity. User Manual The Connector Version 1.2 Microsoft Project to Atlassian JIRA Connectivity User Manual Ecliptic Technologies, Inc. Copyright 2008 www.the-connector.com Page 1 of 86 Copyright and Disclaimer All rights

More information

Copyright SolarWinds. All rights reserved worldwide. No part of this document may be reproduced by any means nor modified, decompiled,

Copyright SolarWinds. All rights reserved worldwide. No part of this document may be reproduced by any means nor modified, decompiled, APM Migration Introduction... 3 General Requirements... 3 Database Requirements... 3 Stopping APM Services... 4 Creating and Restoring Orion Database Backups... 4 Creating a Database Backup File with Database

More information

Vacman Controller. Integration Guide - White Paper. Revision 3.0

Vacman Controller. Integration Guide - White Paper. Revision 3.0 Vacman Controller Integration Guide - White Paper Revision 3.0 Disclaimer Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties,

More information

Using ZENworks with Novell Service Desk

Using ZENworks with Novell Service Desk www.novell.com/documentation Using ZENworks with Novell Service Desk Novell Service Desk 7.1 April 2015 Legal Notices Novell, Inc. makes no representations or warranties with respect to the contents or

More information

Dell Statistica. Statistica Enterprise Server Installation Instructions

Dell Statistica. Statistica Enterprise Server Installation Instructions Dell Statistica Statistica Enterprise Server Installation Instructions 2014 Dell Inc. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described in

More information

SonicWALL CDP 2.1 Agent Tool User's Guide

SonicWALL CDP 2.1 Agent Tool User's Guide COMPREHENSIVE INTERNET SECURITY b SonicWALL CDP Series Appliances SonicWALL CDP 2.1 Agent Tool User's Guide SonicWALL CDP Agent Tool User s Guide Version 2.0 SonicWALL, Inc. 1143 Borregas Avenue Sunnyvale,

More information

The Connector Version 2.0 Microsoft Project to Atlassian JIRA Connectivity

The Connector Version 2.0 Microsoft Project to Atlassian JIRA Connectivity The Connector Version 2.0 Microsoft Project to Atlassian JIRA Connectivity User Manual Ecliptic Technologies, Inc. Copyright 2011 Page 1 of 99 What is The Connector? The Connector is a Microsoft Project

More information

x10data Application Platform v7.1 Installation Guide

x10data Application Platform v7.1 Installation Guide Copyright Copyright 2010 Automated Data Capture (ADC) Technologies, Incorporated. All rights reserved. Complying with all applicable copyright laws is the responsibility of the user. Without limiting the

More information

ESET SECURE AUTHENTICATION. Product Manual

ESET SECURE AUTHENTICATION. Product Manual ESET SECURE AUTHENTICATION Product Manual ESET SECURE AUTHENTICATION Copyright 2014 by ESET, spol. s r.o. ESET Secure Authentication was developed by ESET, spol. s r.o. For more information visit www.eset.com.

More information

How to enable and read the full trace file for IDENTIKEY Authentication Server 3.1, step by step.

How to enable and read the full trace file for IDENTIKEY Authentication Server 3.1, step by step. KB 150021 How to enable and read the full trace file for IDENTIKEY Authentication Server 3.1, step by step. Creation date: 27/11/2009 Last Review: 10/12/2012 Revision number: 3 Document type: How To Security

More information

axsguard Gatekeeper PPTP How To 1.7

axsguard Gatekeeper PPTP How To 1.7 axsguard Gatekeeper PPTP How To 1.7 Table of Contents 1. Introduction 1.1. Audience and Purpose of this Document 1.2. Available Guides 1.3. What is the axsguard Gatekeeper? 1.4. About VASCO 2. General

More information

MyDVD User Guide. MyDVD workspace

MyDVD User Guide. MyDVD workspace MyDVD User Guide Welcome to MyDVD, an easy disc-creation program that lets you turn your videos into professional-looking multimedia disc projects, complete with image-rich menus and music. MyDVD offers

More information

PEAP under Unified Wireless Networks with ACS 5.1 and Windows 2003 Server

PEAP under Unified Wireless Networks with ACS 5.1 and Windows 2003 Server PEAP under Unified Wireless Networks with ACS 5.1 and Windows 2003 Server Document ID: 112175 Contents Introduction Prerequisites Requirements Components Used Conventions Configure Network Diagram Windows

More information

Scribe Insight Installation Guide. Version May 17, 2013

Scribe Insight Installation Guide. Version May 17, 2013 Scribe Insight Installation Guide Version 7.6.1 May 17, 2013 www.scribesoft.com Important Notice No part of this publication may be reproduced, stored in a retrieval system, or transmitted in any form

More information

USER GUIDE. MailMeter. Individual Search and Retrieval. User Guide. Version 4.3.

USER GUIDE. MailMeter. Individual Search and Retrieval. User Guide. Version 4.3. USER GUIDE MailMeter Individual Search and Retrieval User Guide Version 4.3 www.mailmeter.com MailMeter ISR User Guide Version 4.3 May 2009 Published by: Waterford Technologies www.mailmeter.com 2009 Waterford

More information

One Identity Active Roles 7.2. Replication: Best Practices and Troubleshooting Guide

One Identity Active Roles 7.2. Replication: Best Practices and Troubleshooting Guide One Identity Active Roles 7.2 Replication: Best Practices and Troubleshooting Copyright 2017 One Identity LLC. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The

More information

Management Console for SharePoint

Management Console for SharePoint Management Console for SharePoint User Guide Copyright Quest Software, Inc. 2009. All rights reserved. This guide contains proprietary information, which is protected by copyright. The software described

More information

Security Explorer 9.1. User Guide

Security Explorer 9.1. User Guide Security Explorer 9.1 User Guide Security Explorer 9.1 User Guide Explorer 8 Installation Guide ii 2013 by Quest Software All rights reserved. This guide contains proprietary information protected by copyright.

More information

Polycom RealPresence Resource Manager System

Polycom RealPresence Resource Manager System Upgrade Guide 8.2.0 July 2014 3725-72106-001E Polycom RealPresence Resource Manager System Copyright 2014, Polycom, Inc. All rights reserved. No part of this document may be reproduced, translated into

More information

Authorized Send User s Guide Version 4.0

Authorized Send User s Guide Version 4.0 Canon Authorized Send User s Guide Version 4.0 08011-40-UD1-003 This page is intentionally left blank. 2 Authorized Send User s Guide Contents Preface...5 How to Use This Manual... 5 Symbols Used in This

More information

Kaspersky Administration Kit 8.0 GETTING STARTED

Kaspersky Administration Kit 8.0 GETTING STARTED Kaspersky Administration Kit 8.0 GETTING STARTED APPLICATION VERSION: 8.0 CRITICAL FIX 2 Dear User! Thank you for choosing our product. We hope that this document will help you in your work and will provide

More information

Scribe Insight Installation Guide. Version August 10, 2011

Scribe Insight Installation Guide. Version August 10, 2011 Scribe Insight Installation Guide Version 7.0.2 August 10, 2011 www.scribesoft.com Important Notice No part of this publication may be reproduced, stored in a retrieval system, or transmitted in any form

More information

Dell Secure Mobile Access Connect Tunnel Service User Guide

Dell Secure Mobile Access Connect Tunnel Service User Guide Dell Secure Mobile Access 11.4 Connect Tunnel Service 2016 Dell Inc. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described in this guide is furnished

More information

Use Digipass two-factor authentication

Use Digipass two-factor authentication DIGIPASS BY VASCO Secure your business Use Digipass two-factor authentication S T R O N G s tat i c PA S S W O R D S O N E - T I M E PA S S W O R D S P u b l i c K E Y I N F R A S T R U C T U R E digipass

More information

ZENworks Service Desk 8.0 Using ZENworks with ZENworks Service Desk. November 2018

ZENworks Service Desk 8.0 Using ZENworks with ZENworks Service Desk. November 2018 ZENworks Service Desk 8.0 Using ZENworks with ZENworks Service Desk November 2018 Legal Notices For information about legal notices, trademarks, disclaimers, warranties, export and other use restrictions,

More information

Early Data Analyzer Web User Guide

Early Data Analyzer Web User Guide Early Data Analyzer Web User Guide Early Data Analyzer, Version 1.4 About Early Data Analyzer Web Getting Started Installing Early Data Analyzer Web Opening a Case About the Case Dashboard Filtering Tagging

More information

Giovanni Carnovale Technical Account Manager Southeast Europe VASCO Data Security

Giovanni Carnovale Technical Account Manager Southeast Europe VASCO Data Security Giovanni Carnovale Technical Account Manager Southeast Europe The concept of strong authentication Something you have Something you know We authenticate the world 2 Authenticate where? We authenticate

More information

User Guide. Portable Calibration Module

User Guide. Portable Calibration Module Portable Calibration Module User Guide CyberMetrics Corporation 1523 W. Whispering Wind Drive Suite 100 Phoenix, Arizona 85085 USA Toll-free: 1-800-777-7020 (USA) Phone: (480) 922-7300 Fax: (480) 922-7400

More information

Active Directory Change Notifier Quick Start Guide

Active Directory Change Notifier Quick Start Guide Active Directory Change Notifier Quick Start Guide Software version 3.0 General Information: info@cionsystems.com Online Support: support@cionsystems.com Copyright 2017 CionSystems Inc., All Rights Reserved

More information

Reconfiguring VMware vsphere Update Manager. Update 1 VMware vsphere 6.5 vsphere Update Manager 6.5

Reconfiguring VMware vsphere Update Manager. Update 1 VMware vsphere 6.5 vsphere Update Manager 6.5 Reconfiguring VMware vsphere Update Manager Update 1 VMware vsphere 6.5 vsphere Update Manager 6.5 You can find the most up-to-date technical documentation on the VMware website at: https://docs.vmware.com/

More information

One Identity Defender 5.9. Product Overview

One Identity Defender 5.9. Product Overview One Identity 5.9 Product Overview Copyright 2017 One Identity LLC. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described in this guide is furnished

More information

NetSupport Protect 2.00 Readme

NetSupport Protect 2.00 Readme NetSupport Protect 2.00 Readme Contents Introduction...3 Overview of Features...4 Licence Agreement...5 System Requirements...6 Upgrading NetSupport Protect...7 Limitations/known Issues...7 Introduction

More information

Token Guide for KT-4 for

Token Guide for KT-4 for Token Guide for KT-4 for Powerful Authentication Management for Service Providers and Enterprises Authentication Service Delivery Made EASY Token Guide for KT-4 Copyright Copyright 2011. CRYPTOCard Inc.

More information

DataFlux Web Studio 2.5. Installation and Configuration Guide

DataFlux Web Studio 2.5. Installation and Configuration Guide DataFlux Web Studio 2.5 Installation and Configuration Guide The correct bibliographic citation for this manual is as follows: SAS Institute Inc. 2014. DataFlux Web Studio 2.5: Installation and Configuration

More information

Micro Focus The Lawn Old Bath Road Newbury, Berkshire RG14 1QN UK

Micro Focus The Lawn Old Bath Road Newbury, Berkshire RG14 1QN UK Relativity Designer Micro Focus The Lawn 22-30 Old Bath Road Newbury, Berkshire RG14 1QN UK http://www.microfocus.com Copyright Micro Focus 2009-2015. All rights reserved. MICRO FOCUS, the Micro Focus

More information

DocAve for Salesforce 2.1

DocAve for Salesforce 2.1 DocAve for Salesforce 2.1 This document is intended for anyone wishing to familiarize themselves with the user interface and basic functionality of AvePoint s DocAve for Salesforce tool. System Requirements

More information

Stellar WAB to PST Converter 1.0

Stellar WAB to PST Converter 1.0 Stellar WAB to PST Converter 1.0 1 Overview Stellar WAB to PST Converter software converts Outlook Express Address Book, also known as Windows Address Book (WAB) files to Microsoft Outlook (PST) files.

More information

PageScope Box Operator Ver. 3.2 User s Guide

PageScope Box Operator Ver. 3.2 User s Guide PageScope Box Operator Ver. 3.2 User s Guide Box Operator Contents 1 Introduction 1.1 System requirements...1-1 1.2 Restrictions...1-1 2 Installing Box Operator 2.1 Installation procedure...2-1 To install

More information

BlackBerry Enterprise Server for Microsoft Office 365. Version: 1.0. Administration Guide

BlackBerry Enterprise Server for Microsoft Office 365. Version: 1.0. Administration Guide BlackBerry Enterprise Server for Microsoft Office 365 Version: 1.0 Administration Guide Published: 2013-01-29 SWD-20130131125552322 Contents 1 Related resources... 18 2 About BlackBerry Enterprise Server

More information

User Databases. ACS Internal Database CHAPTER

User Databases. ACS Internal Database CHAPTER CHAPTER 12 The Cisco Secure Access Control Server Release 4.2, hereafter referred to as ACS, authenticates users against one of several possible databases, including its internal database. You can configure

More information

Install and Issuing your first Full Feature Operator Card

Install and Issuing your first Full Feature Operator Card Install and Issuing your first Full Feature Operator Card Install S-Series versasec.com 1(28) Table of Contents Install and Issuing your first Full Feature Operator Card... 3 Section 1: Install and Initial

More information

Operational Reporting Web Viewer Installation and Users Guide

Operational Reporting Web Viewer Installation and Users Guide Operational Reporting Web Viewer Installation and Users Guide Table of Contents Disclaimer... 3 What is Operational Reporting Web Viewer?... 4 Installation Requirements... 5 Installation Instructions...

More information

FaciliWorks. Desktop CMMS Installation Guide

FaciliWorks. Desktop CMMS Installation Guide FaciliWorks Desktop CMMS Installation Guide FaciliWorks Desktop CMMS Installation Guide CyberMetrics Corporation 1523 West Whispering Wind Drive, Suite 100 Phoenix, Arizona 85085 USA Toll-free: 1-800-776-3090

More information

Quest ChangeAuditor 5.1 FOR LDAP. User Guide

Quest ChangeAuditor 5.1 FOR LDAP. User Guide Quest ChangeAuditor FOR LDAP 5.1 User Guide Copyright Quest Software, Inc. 2010. All rights reserved. This guide contains proprietary information protected by copyright. The software described in this

More information

XLmanage Version 2.4. Installation Guide. ClearCube Technology, Inc.

XLmanage Version 2.4. Installation Guide. ClearCube Technology, Inc. XLmanage Version 2.4 Installation Guide ClearCube Technology, Inc. www.clearcube.com Copyright and Trademark Notices Copyright 2009 ClearCube Technology, Inc. All Rights Reserved. Information in this document

More information

OmniPass 2.0 User's Guide. Version 1.2

OmniPass 2.0 User's Guide. Version 1.2 OmniPass 2.0 User's Guide Version 1.2 i Copyright Copyright 2002 Softex Incorporated. No part of this publication may be reproduced, transmitted, transcribed, stored in a retrieval system, or translated

More information

Perceptive TransForm E-Forms Manager

Perceptive TransForm E-Forms Manager Perceptive TransForm E-Forms Manager Installation and Setup Guide Version: 8.x Date: February 2017 2016-2017 Lexmark. All rights reserved. Lexmark is a trademark of Lexmark International Inc., registered

More information

Veritas System Recovery 18 Management Solution Administrator's Guide

Veritas System Recovery 18 Management Solution Administrator's Guide Veritas System Recovery 18 Management Solution Administrator's Guide Documentation version: 18 Legal Notice Copyright 2018 Veritas Technologies LLC. All rights reserved. Veritas and the Veritas Logo are

More information

How to configure SecureW2

How to configure SecureW2 How to configure SecureW2 Disclaimer The software described in this document is furnished under a license agreement and may be used only in accordance with the terms of the agreement. Copyright Notice

More information

AUTHORIZED DOCUMENTATION

AUTHORIZED DOCUMENTATION Administration Guide AUTHORIZED DOCUMENTATION Novell SecureLogin 6.1 SP1 June, 2009 www.novell.com Novell SecureLogin 6.1 SP1 Administration Guide Legal Notices Novell, Inc. makes no representations or

More information

Symantec Validation & ID Protection Service. Integration Guide for Microsoft Outlook Web App

Symantec Validation & ID Protection Service. Integration Guide for Microsoft Outlook Web App Symantec Validation & ID Protection Service Integration Guide for Microsoft Outlook Web App 2 Symantec VIP Integration Guide for Microsoft Outlook Web App The software described in this book is furnished

More information

Software Token. Installation and User Guide. 22 September 2017

Software Token. Installation and User Guide. 22 September 2017 Software Token Installation and User Guide 22 September 2017 Notices Following are policies pertaining to proprietary rights and trademarks. Proprietary Rights The information contained in this document

More information

Bank of Ireland Digipass User Guide

Bank of Ireland Digipass User Guide Bank of Ireland Digipass User Guide 1 of 10 About Your Digipass What is Digipass and how does it work? Your Digipass is the security token used to access Business On Line Payments Plus (BOL PP) and to

More information

Stonesoft Management Center. Release Notes for Version 5.6.1

Stonesoft Management Center. Release Notes for Version 5.6.1 Stonesoft Management Center Release Notes for Version 5.6.1 Updated: January 9, 2014 Table of Contents What s New... 3 Fixes... 3 System Requirements... 6 Basic Management System Hardware Requirements...

More information

Quest Enterprise Reporter 2.0 Report Manager USER GUIDE

Quest Enterprise Reporter 2.0 Report Manager USER GUIDE Quest Enterprise Reporter 2.0 Report Manager USER GUIDE 2014 Quest Software, Inc. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described in this

More information

Managing External Identity Sources

Managing External Identity Sources CHAPTER 5 The Cisco Identity Services Engine (Cisco ISE) integrates with external identity sources to validate credentials in user authentication functions, and to retrieve group information and other

More information

Common Access Card for Xerox VersaLink Printers

Common Access Card for Xerox VersaLink Printers Common Access Card for Xerox VersaLink Printers System Configuration Guide Version 1.3 NOVEMBER 2017 2017 Xerox Corporation. All rights reserved. Unpublished rights reserved under the copyright laws of

More information

DefendX Software Control-Audit for Hitachi Installation Guide

DefendX Software Control-Audit for Hitachi Installation Guide DefendX Software Control-Audit for Hitachi Installation Guide Version 4.1 This guide details the method for the installation and initial configuration of DefendX Software Control-Audit for NAS, Hitachi

More information

INTEGRATION GUIDE. DIGIPASS Authentication for VMware View

INTEGRATION GUIDE. DIGIPASS Authentication for VMware View INTEGRATION GUIDE DIGIPASS Authentication for VMware View Disclaimer Disclaimer of Warranties and Limitation of Liabilities All information contained in this document is provided 'as is'; VASCO Data Security

More information

Upgrading MYOB BankLink Notes (desktop)

Upgrading MYOB BankLink Notes (desktop) Upgrading MYOB BankLink Notes (desktop) Contents Upgrading MYOB BankLink Notes (desktop)...4 Upgrading MYOB BankLink Notes using the automatic upgrade 4 Upgrading MYOB BankLink Notes when asked to upgrade

More information