NetIQ Advanced Authentication Framework - Virtual Desktop Authentication (VDA) Shell. User's Guide. Version 5.1.0

Similar documents
NetIQ Advanced Authentication Framework - Virtual Desktop Authentication (VDA) Profile Editor. Administrator's Guide. Version 5.1.

NetIQ Advanced Authentication Framework - Virtual Desktop Authentication (VDA) Profile Editor. Administrator's Guide. Version 5.1.

NetIQ Advanced Authentication Framework - Virtual Desktop Authentication (VDA) Shell. Installation Guide. Version 5.1.0

NetIQ Advanced Authentication Framework. Deployment Guide. Version 5.1.0

NetIQ Advanced Authentication Framework - Extensible Authentication Protocol Server. Installation Guide. Version 5.1.0

NetIQ Advanced Authentication Framework - Citrix XenDesktop Plugin. Installation Guide. Version 5.1.0

NetIQ Advanced Authentication Framework - Extensible Authentication Protocol Server. Administrator's Guide. Version 5.1.0

NetIQ Advanced Authentication Framework. Smartphone Authentication Provider User's Guide for Windows. Version 5.1.0

NetIQ Advanced Authentication Framework. OATH Authentication Provider User's Guide. Version 5.1.0

NetIQ Advanced Authentication Framework- Web Service. Installation Guide. Version 5.1.0

NetIQ Advanced Authentication Framework. FIDO U2F Authentication Provider Installation Guide. Version 5.1.0

NetIQ Advanced Authentication Framework. Deployment Guide. Version 5.1.0

NetIQ Advanced Authentication Framework - Group Policy Templates. Administrator's Guide. Version 5.1.0

Helpdesk Administration Guide Advanced Authentication. Version 5.6

Helpdesk Administration Guide Advanced Authentication. Version 6.0

NetIQ Access Manager - Advanced Authentication Plugin. Installation Guide. Version 5.1.0

Login Defender. Quick Guide. Copyright by Cryptware di Ugo Chirico

NetIQ Advanced Authentication Framework. Flash Drive Authentication Provider Installation Guide. Version 5.1.0

NetIQ Advanced Authentication Framework. Voice Call Server Installation Guide. Version 5.1.0

Appserv Internal Desktop Access Mac OS Device with Safari Browser. Enter your Appserv username and password to sign in to the Website

External Authentication with Citrix GoToMyPc Corporate Edition Authenticating Users Using SecurAccess Server by SecurEnvoy

<Partner Name> <Partner Product> RSA SECURID ACCESS. VMware Horizon View 7.2 Clients. Standard Agent Client Implementation Guide

NetIQ Advanced Authentication Framework - Client. User's Guide. Version 5.1.0

Device LinkUP + VIN. Service + Desktop LP Guide RDP

VAM. Epic epcs Value-Added Module (VAM) Deployment Guide

Munroe Regional Medical Center

Remote Access User Guide for Mac OS (Citrix Instructions)

Connectivity options configuration

Connect to Wireless, certificate install and setup Citrix Receiver

IBM Security Access Manager for Enterprise Single Sign-On Version 8.2. Administrator Guide SC

Citrix Remote Access. Accessing applications and files away from the office MOBILE WORKING Kennedys

Product Documentation

VMware vrealize Operations for Horizon Administration

You should be asked if you want to run or save this file, please select run. After the install is complete it will redirect you to the logon page.

expressaccess 1.1 (Build 120) Release Notes

Product Documentation

VMware vrealize Operations for Horizon Administration

Citrix XenApp / XenDesktop Setup Procedure For Q-Tel Workstation

Citrix Receiver for ios 5.9

Socorro Independent School District File Management November, 2014

Remote Access. Application Viewer User Guide

Connection Broker Advanced Connections Management for Multi-Cloud Environments Leostream Connect Administrator s Guide and End User s Manual

Authlogics Forefront TMG and UAG Agent Integration Guide

VMware Horizon Client Install & Login - Android

mystanwell.com Accessing using Apple devices Information and Business Systems

Connect to Wireless, certificate install and setup Citrix Receiver

STRS OHIO F5 Access Client Setup for ChromeBook Systems User Guide

Polycom Better Together over Ethernet Connector 3.9.0

Remote Access Instructions. remote.gpmlaw.com

Configuring Imprivata OneSign with 10ZiG NOS Zero clients

Enter your Appserv username and password to sign in to the Website

Remote Access to the CIS VLab (308)

Windows 8.1 and Windows 10 a) Connect to wireless network Click on the wireless icon in taskbar. Select detnsw and click on Connect.

H3C Intelligent Management Center v7.3

Polycom Better Together over Ethernet Connector 3.8.0

Agility 2018 Hands-on Lab Guide. VDI the F5 Way. F5 Networks, Inc.

VMware Horizon Client for Windows 10 UWP User Guide. 06 SEP 2018 VMware Horizon Client for Windows 10 UWP 4.9

STRS OHIO Telework F5 BIG-IP Edge Client for Mac Systems (Imac, Air, Macbook, Mini) User Guide

VMware Horizon Client Install & Login iphone & ipad

VMWARE HORIZON CLIENT INSTALLATION USER GUIDE

Faculty Database (FDB) and TA Credentials Database (TADB) July 17, 2014 Launch from myuk portal

Technology Services Group Procedures. IH Anywhere guide. 0 P a g e

Citrix Workspace app for ios

Dell EMC Ready System for VDI on XC Series

NetIQ Advanced Authentication Framework. Voice Call Authentication Provider Installation Guide. Version 5.1.0

Installation Guide Advanced Authentication - Windows Client. Version 5.6

Virtual Desktop Infrastructure Setup for MacOS

Advanced Authentication 6.0 includes new features, improves usability, and resolves several previous issues.

SurePassID ServicePass User Guide. SurePassID Authentication Server 2017

Windows 10 IoT QSG Edited Draft

SC-T35/SC-T45/SC-T46/SC-T47 ViewSonic Device Manager User Guide

NetIQ SecureLogin 8.7 enhances the product capability and resolves several previous issues.

DigitalPersona Pro Enterprise

One Identity Authentication Manager for Windows User's Guide

VMware Horizon Migration Tool User Guide

Virtual Desktop (Windows 7 VM) User Guide

How to Use mysipa on ipad

Oracle Enterprise Single Sign-on Logon Manager

Administrator Guide. HP ThinPro 6.2

Virtual Desktop Infrastructure Setup for Android

Virtual Computer Lab (VCL)

Citrix Workspace app 1808 for ios

Dell Wyse ThinLinux Version 2.1 Release Notes

Connecting to the Virtual Desktop Infrastructure (VDI)

NetIQ Advanced Authentication Framework. Smartphone Authentication Dispatcher Installation Guide. Version 5.1.0

Meeting the requirements of PCI DSS 3.2 standard to user authentication

VPN Installation Quick Setup Guide

VMware Horizon Client Install & Login Windows PC

WDC RDS Connection for Android Users

Thin Clients, Wireless Computers, Macs and Mobile Devices

Dell Wyse Management Suite. Version 1.2 Administrator s Guide

Using the Microsoft Remote Desktop on non-windows devices

Configuring OneSign 4.9 Virtual Desktop Access with Horizon View HOW-TO GUIDE

H3C Intelligent Management Center v7.3

29 March 2017 SECURITY SERVER INSTALLATION GUIDE

Dell EMC Ready Architectures for VDI

Configuring Imprivata OneSign with 10ZiG NOS Zero clients

Users Guide. Wyse PocketCloud TM. Issue: PN: Rev. F

CKHS VPN Connection Instructions

MOBILE BANKING APPLICATION USER GUIDE

Transcription:

NetIQ Advanced Authentication Framework - Virtual Desktop Authentication (VDA) Shell User's Guide Version 5.1.0

Table of Contents 1 Table of Contents 2 Introduction 3 About This Document 3 Managing NetIQ Advanced Authentication Framework Virtual Desktop Authentication Shell 4 Pre-Session Authentication 5 Card Authentication 6 FIDO U2F Authentication 7 Fingerprint Authentication 8 OATH TOTP Authentication 10 In-Session Authentication 12 Card Authentication 13 Fingerprint Authentication 14 OATH TOTP Authentication 16 Index 18 2

Introduction About This Document Purpose of the Document This Virtual Desktop Authentication Shell User s Guide is intended for all user categories and describes how to use NetIQ Advanced Authentication Framework VDA Shell. For more information about NetIQ Advanced Authentication Framework software, see NetIQ Advanced Authentication Framework Administrative Tools - Administrator s Guide. Document Conventions This document uses the following conventions: Warning. This sign indicates requirements or restrictions that should be observed to prevent undesirable effects. Important notes. This sign indicates important information you need to know to use the product successfully. Notes. This sign indicates supplementary information you may need in some cases. Tips. This sign indicates recommendations. Terms are italicized, e.g.: Authenticator. Names of GUI elements such as dialogs, menu items, and buttons are put in bold type, e.g.: the Logon window. 3

Managing NetIQ Advanced Authentication Framework Virtual Desktop Authentication Shell To change profile for VDA Shell on the thin client, to display the profile selection dialog and to save changes in the registry, execute NAAF VDA Shell (which is located in C:\Program Files\ NetIQ \ NetIQ Advanced Authentication Framework\) with /manageprofiles parameter. This action requires Local Admins privileges. To open the profile selection dialog for one session only, execute NAAF VDA Shell with /showprofiles parameter. NetIQ VDA Shell allows using 2 methods of authentication: pre-session authentication in-session authentication 4

Pre-Session Authentication Pre- session authentication starts before the remote session is started. NetIQ VDA Shell application on the thin client does the authentication using NetIQ Advanced Authentication Framework Web Service and then starts the remote session. VDI environment has a Broker that decides what to do with a request. It is required to check if there is already a disconnected session and then reconnect the user to it. This works with pre-session method of authentication because the session is actually started with the user credentials and the broker knows which user it is. To start the pre-session authentication, run the NAAF.VDA.Shell application that is marked with the following icon and appears in NetIQ distributive kit after the installation of the VDA Shell on the Client. The NetIQ VDA Profile List window will be displayed. Click Load to start using it. The authentication window will be displayed. Pre-session authentication supports the following logon methods: Card authentication FIDO U2F authentication Fingerprint authentication OATH OTP authentication In the Username field it is required to enter the Domain name before the username. The user is not located in the domain during the pre-session authentication. 5

Card Authentication 1. Select Card as the Logon method in the authentication window. 2. After tapping a card, enter the PIN-code in the Logon window. 3. The remote session starts. 6

FIDO U2F Authentication 1. Select FIDO U2F as the Logon method in the authentication window. 2. Enter the PIN code in the Logon window and press the token button. 3. The remote session starts. 7

Fingerprint Authentication 1. Select Fingerprint as the Logon method in the authentication window. 2. Place the finger on the reader until the wizard gives you confirmation. 3. The remote session starts. 8

9

OATH TOTP Authentication 1. Select OATH OTP as the Logon method in the authentication window. 2. Enter the password in the OATH - Logon window. 3. The remote session starts. 10

11

In-Session Authentication In-session method of authentication is used to authenticate after the start of the remote session in VMware View, Citrix XenApp or Microsoft RDP. With in-session authentication the session is already setup. If the session is hard-coded to a specific remote server, then inside the session the user will do authentication to the windows logon. The credentials will be sent to the NetIQ Advanced Authentication Framework - Client or RTE inside the session. The user will be authenticated successfully. After the start of the remote session in VMware View, Citrix XenApp or Microsoft RDP, the insession authentication will be started. The authentication window will be displayed. In-session authentication supports the following logon methods: Card authentication Fingerprint authentication OATH OTP authentication Enter the Username in the Username field. The user is located in the domain during the insession authentication. 12

Card Authentication 1. Select Card as the Logon method in the authentication window. 2. After tapping a card, enter the PIN-code in the Logon window. 3. The remote session starts. 13

Fingerprint Authentication 1. Select Fingerprint as the Logon method in the authentication window. 2. Place the finger on the reader until the wizard gives you confirmation. 3. The remote session starts. 14

15

OATH TOTP Authentication 1. Select OATH OTP as the Logon method in the authentication window. 2. Enter the password in the OATH - Logon window. 16

3. The remote session starts. 17

Index A Administrator 3 Authentication 1, 3-5, 7, 12 Authenticator 3 C Card 5-6, 12-13 Client 5, 12 D Desktop 1, 3-4 Domain 5 F Fingerprint 5, 8, 12, 14 L List 5 Local 4 Logon 3, 6-8, 10, 13-14, 16 O OATH 5, 10, 12, 16 OTP 10, 16 P PIN 7 PIN-code 6, 13 U User 1 Username 5, 12 18