A Quick start Guide. Version General Information: Online Support:

Similar documents
Active Directory Reporter Quick start Guide

Active Directory Manager Pro Quick start Guide

Multifactor Authentication Installation and Configuration Guide

Cloud Identity Management Tool Quick Start Guide

Active Directory Change Notifier Quick Start Guide

FAQ. General Information: Online Support:

One Identity Password Manager User Guide

EAM Portal User's Guide

One Identity Active Roles 7.2

One Identity Starling Two-Factor AD FS Adapter 6.0. Administrator Guide

Dell Statistica. Statistica Enterprise Server Installation Instructions

Quest VROOM Quick Setup Guide for Quest Rapid Recovery and Foglight Windows Installers

One Identity Starling Two-Factor Desktop Login 1.0. Administration Guide

Quest VROOM Quick Setup Guide for Quest Rapid Recovery and Foglight Windows Installers

Quest VROOM Quick Setup Guide for Quest Rapid Recovery for Windows and Quest Foglight vapp Installers

Metalogix Essentials for Office Creating a Backup

Quest VROOM Quick Setup Guide for Quest Rapid Recovery for Windows and Quest Foglight vapp Installers

Authentication Service Api Help Guide

One Identity Starling Two-Factor HTTP Module 2.1. Administration Guide

One Identity Active Roles 7.2. Azure AD and Office 365 Management Administrator Guide

Cloud Identity Minder Authentication WebService Usage Guidelines

Authentication Services ActiveRoles Integration Pack 2.1.x. Administration Guide

Metalogix Intelligent Migration. Installation Guide

Rapid Recovery License Portal Version User Guide

1.0. Quest Enterprise Reporter Discovery Manager USER GUIDE

Cloud Access Manager How to Deploy Cloud Access Manager in a Virtual Private Cloud

SharePoint Farm Reporter Installation Guide

Quest One Password Manager

Management Console for SharePoint

Enterprise Vault.cloud CloudLink Google Account Synchronization Guide. CloudLink to 4.0.3

One Identity Active Roles Diagnostic Tools 1.2.0

Quest Collaboration Services 3.6. Installation Guide

One Identity Defender 5.9. Product Overview

Metalogix Content Matrix 8.7. Quick Start Guide

Veritas Desktop and Laptop Option Mac Getting Started Guide

Metalogix ControlPoint 7.6. Advanced Iinstallation Guide

Quest Recovery Manager for Active Directory 9.0. Quick Start Guide

Toad Edge Installation Guide

Intel Small Business Extended Access. Deployment Guide

SonicWall Secure Mobile Access SMA 500v Virtual Appliance 8.6. Getting Started Guide

Quest Migration Manager Upgrade Guide

Veritas Desktop Agent for Mac Getting Started Guide

Metalogix ControlPoint 7.6. for Office 365 Installation Guide

One Identity Manager 8.0. Administration Guide for Connecting to a Universal Cloud Interface

SonicWall Global VPN Client Getting Started Guide

Quest Unified Communications Diagnostics Data Recorder User Guide

One Identity Active Roles 7.2. Replication: Best Practices and Troubleshooting Guide

Dell SonicWALL SonicOS 5.9 Upgrade Guide

Quest Recovery Manager for Active Directory Forest Edition 9.0. Quick Start Guide

x10data Application Platform v7.1 Installation Guide

Cloud Access Manager How to Configure for SSO to SAP NetWeaver using SAML 2.0

Symantec Desktop and Laptop Option 8.0 SP2. Symantec Desktop Agent for Mac. Getting Started Guide

Authentication Manager Self Service Password Request Administrator s Guide

Computer Management* (IEA) Training Foils

One Identity Manager 8.0. Administration Guide for Connecting to Azure Active Directory

Bomgar Vault Server Installation Guide

One Identity Manager Data Archiving Administration Guide

Dell Secure Mobile Access Connect Tunnel Service User Guide

MySonicWall Secure Upgrade Plus

Dell MessageStats for Lync User Guide

SQL Optimizer for Oracle Installation Guide

Toad Edge Installation Guide

KACE GO Mobile App 5.0. Getting Started Guide

High Availability Enabling SSL Database Migration Auto Backup and Auto Update Mail Server and Proxy Settings Support...

One Identity Manager Administration Guide for Connecting to SharePoint Online

Instant HR Auditor Installation Guide

Toad Intelligence Central 3.3 New in This Release

One Identity Manager Administration Guide for Connecting to SharePoint

INSTALLATION GUIDE Spring 2017

Spotlight on SQL Server Enterprise Spotlight Management Pack for SCOM

Quest ChangeAuditor 5.1 FOR LDAP. User Guide

Installation Guide. 3CX CRM Plugin for ConnectWise. Single Tenant Version

Cloud Access Manager SonicWALL Integration Overview

The Privileged Appliance and Modules (TPAM) 1.0. Diagnostics and Troubleshooting Guide

Quest Enterprise Reporter 2.0 Report Manager USER GUIDE

CompleteView Admin Console User Manual. CompleteView Version 4.6

Security Removable Media Manager

One Identity Quick Connect Express

One Identity Manager 8.0. Administration Guide for Connecting Unix-Based Target Systems

Cloud Access Manager Configuration Guide

KACE GO Mobile App 5.0. Release Notes

SonicWall SonicOS 5.9

Knowledge Portal 2.6. Installation and Configuration Guide

Getting Started and System Guide. Version

KACE GO Mobile App 3.1. Release Notes

Downloading and Licensing. (for Stealthwatch System v6.9.1)

8.2. Quick Start Guide

Quest Knowledge Portal Installation Guide

Security Removable Media Manager

One Identity Starling Identity Analytics & Risk Intelligence. User Guide

Cloud Access Manager How to Configure Microsoft Office 365

SPListX for SharePoint Installation Guide

Security Removable Media Manager. Excel AddIn. Version (December 2015) Protect your valuable data

Quest Code Tester for Oracle 3.1. Installation and Configuration Guide

Installation Guide for Pulse on Windows Server 2012

Tanium IaaS Cloud Solution Deployment Guide for Microsoft Azure

Toad DevOps Toolkit 1.0

One Identity Starling Two-Factor Authentication. Administration Guide

Security Explorer 9.1. User Guide

LiteSpeed for SQL Server 6.1. Configure Log Shipping

Transcription:

A Quick start Guide Version 3.0.0.4 General Information: info@cionsystems.com Online Support: support@cionsystems.com Copyright 2017 CionSystems Inc., All Rights Reserved Page 1

2017 CionSystems Inc. ALL RIGHTS RESERVED. This guide may not be reproduced or transmitted in part or in whole by any means, electronic or mechanical, including photo copying and recording for any purpose other than the purchaser's use under the licensing agreement, without the written permission of CionSystems Inc. The software application in this guide is provided under a software license (EULA) or non-disclosure agreement. This product may only be used in accordance with the terms of the applicable licensing agreement. This guide contains proprietary information protected by copyright. For questions regarding the use of this material and product, contact us at: CionSystems Inc. 6640 185 th Ave NE Redmond, WA-98052, USA http://www.cionsystems.com Ph: +1.425.605.5325 Trademarks CionSystems, CionSystems Inc., the CionSystems Inc. logo, CionSystems Cloud Identity Minder are trademarks of CionSystems. Other trademarks and registered trademarks used in this guide are property of their respective owners. Copyright 2017 CionSystems Inc., All Rights Reserved Page 2

Table of Contents Introduction... 4 Features... 4 System Requirements... 5 Installation... 5 Downloading Cloud Identity Minder... 5 Installing from CD... 5 Installation Wizard... 6 Configuring CionSystems Cloud Identity Minder... 12 Configuration of Domain... 12 Adding Domain... 13 Adding Microsoft Office365 Domain... 15 Changing Application base URL... 16 Troubleshooting Installation issues... 17 Windows Server 2008 R2... 17 1. Error: This setup requires Microsoft.NET Framework version 4.0 displays during installation... 17 2. Error: You do not have sufficient privileges to complete this installation... 18 3. Error: This setup requires Internet Information Server 5.1 or higher displays during installation... 19 4. Changing Application pool Identity for DefaultAppPool in IISManager... 21 5. Error: Server Error in /Cloud Identity Minder Application... 23 6. Error: SQL Login failed during the database configuration of application... 24 Windows Server 2012... 32 1. Error: Installation Incomplete displays during installation... 32 Windows Server 2016... 36 1. Error: Installation Incomplete displays during installation... 36 Copyright 2017 CionSystems Inc., All Rights Reserved Page 3

Introduction CionSystems Cloud Identity Minder helps end users make account changes securely, allowing administrators to implement stronger Policies while reducing help-desk workload. It provides a simple, secure web-based solution that allows end users to reset forgotten passwords and unlock their user accounts in the local domain and Microsoft Office 365 by answering pre-configured questions. It also generates comprehensive reports such as: Locked out Users, Soon-to-Expire-Password-Users, and Password Expired Users. These reports provide a clear picture of the user account status in the Domain. The above reports can also be scheduled on a monthly, weekly, daily or hourly basis, providing administrators control, and supplying the needed notifications to increase productivity and efficiency. The Cloud Identity Minder also provides detailed audit features: when, by whom and which passwords or accounts were modified. Users can update their own personal information from the web based console with the Self Update feature that is bundled with the product. Administrators can give controlled access so that users could update their personal contact details which may include available attributes present in the like Name, Contact Info, SAM Account name, etc. The Admin Function of CionSystems Cloud Identity Minder allows privileged users with access to General, Exchange, Account, Terminal and Custom Attributes. As delegated by Administrators, users can modify any of these attributes. Features Dashboard Application Policy and security Configuration General Settings Configuration Copyright 2017 CionSystems Inc., All Rights Reserved Page 4

System Requirements CionSystems Cloud Identity Minder Requirements: 4GB RAM (8GB Recommended). 50 MB of disk space Web Browser IE 9.0 or higher. Windows Server 2008 or Higher. IIS server 7.0 or higher. Microsoft.NET 4.0 Framework. Access to Windows Active Directory ( 2008 or higher) Access to Redhat Open LDAP Access to Centos Open LDAP, Office 365, Microsoft Azure AD SQL Server 2008 or higher Full or Express Edition. Installation You can install Cloud Identity Minder either by downloading it from website or from CD. Downloading Cloud Identity Minder 1. To download Cloud Identity Minder from http://www.cionsystems.com 2. Save the download to the system 3. Execute the MSI file. Note: You will have hold shift and right click, choose run as administrator on a User control enabled system. Installing from CD To install Cloud Identity Minder from CD 1. Insert CionSystems Cloud Identity Minder CD into your CD drive. 2. Click on start on start button. 3. Click on My Computer. 4. Double click on CD drive. 5. Double click on CloudIdentityMinder.msi. 6. Setup process will start. 7. Go to Picture 1 in Installation Wizard. Copyright 2017 CionSystems Inc., All Rights Reserved Page 5

Installation Wizard 1. Right Click on Cloud Identity Minder.msi file. 2. Click Install. The Welcome Screen will open 3. Click Next. 4. Click Next in System Requirements and Information screen. Copyright 2017 CionSystems Inc., All Rights Reserved Page 6

5. Select I Agree. 6. Click Next. 7. Cloud Identity Minder will start installing. 8. IIS Authentication pop up will appear, enter IIS Username(as domainname\administrator) and Password, Click on OK button. Copyright 2017 CionSystems Inc., All Rights Reserved Page 7

9. SQL Server Configuration pop up will appear, if you are installing the application for the first time then click on Create New Database. In Configuration Details, you can select SQL Authentication or Windows Authentication. For SQL Enter SQL database Server name, Select SQL Authentication, Enter the SQL port number, ensure the SQL indeed is using the default port. Enter Login and Password. Enter valid details and click Test Connection. If Test Connection displays connected successfully message, then Click on Next. Otherwise, please see the additional steps below. Copyright 2017 CionSystems Inc., All Rights Reserved Page 8

10. When choosing Windows Authentication Enter SQL database Server name Select Windows Authentication Note: Login and Password will be grayed out. If test connection displays Connected successfully message. Then, Click on Next. Otherwise see the information following this step. To connect to remote database that is on a different system please follow the below steps: Enable TCP/IP protocol Add the name of the system where you are installing the application (domainname\machinename$) to the SQL server and provide the appropriate privileges. After adding system account in SQL server logins, Right click on account and modify the server roles and give the following permission dbcreator, sysadmin, public and click on save. Copyright 2017 CionSystems Inc., All Rights Reserved Page 9

Note: To use the Use Existing Database radio button, Cloud Identity Minder database should be already exist in the selected SQL database server. If Cloud Identity Minder database already exist in the selected SQL database server and if you choose Create New Database radio button, then old database will be deleted and new database will be created. 11. When the installation is complete Click on Close. Copyright 2017 CionSystems Inc., All Rights Reserved Page 11

Configuring CionSystems Cloud Identity Minder Configuration of Domain Click on Start Button> All Programs> Cloud Identity Minder> Cloud Identity Minder icon. OR Click Cloud Identity Minder Icon on desktop. The login screen will open in the default web browser, to login on to the application for the first time Enter admin in the User Name dialogue box. Enter admin in the Password dialogue box. Note: It is recommended that user name and password should be changed after the application has been launched. Copyright 2017 CionSystems Inc., All Rights Reserved Page 12

Adding Domain Enter all required domain details and configure the domain: Server Name (Domain Controller Name)/IP Address. Domain Name. Domain User Name. Domain Password. Select Container to create users. By Default all users signup for the application will be created in this OU Copyright 2017 CionSystems Inc., All Rights Reserved Page 13

List of Domain Controllers. (For AD) Select Primary radio button. (For AD) Click on Save button. Configuration of Domain is completed. Copyright 2017 CionSystems Inc., All Rights Reserved Page 14

Once Domain Configuration is completed, the dashboard window will appear with a view of the active directory categories of reports. Adding Microsoft Office365 Domain Login with User name as admin and Password as admin Enter Username, Password and click on Save Copyright 2017 CionSystems Inc., All Rights Reserved Page 15

Changing Application base URL Login with admin credentials, Click on Customization and click on Other In application base URL enter IP Address or DNS name of the Machine where the application was installed For eg: http://192.168.1.109/ Copyright 2017 CionSystems Inc., All Rights Reserved Page 16

And click on Save Troubleshooting Installation issues Windows Server 2008 R2 1. Error: This setup requires Microsoft.NET Framework version 4.0 displays during installation If you see the following screen during installation, you need to install the.net Framework version 4.0 To install the.net Framework version 4.0, click on below link. This will redirect to.net Framework 4.0 download page. http://www.microsoft.com/en-in/download/details.aspx?id=17718 Copyright 2017 CionSystems Inc., All Rights Reserved Page 17

Download and install.net Framework4.0, ensure appropriate.net versions are installed. 2. Error: You do not have sufficient privileges to complete this installation If you see the following screen during installation, you don t have the privileges to install the.msi file of the application. You have to login as an administrator or you have admin privileges to run the.msi file. Otherwise you may run the.exe file of the application as an administrator by holding down shift key and right click the mouse, choose Run as administrator. Copyright 2017 CionSystems Inc., All Rights Reserved Page 18

3. Error: This setup requires Internet Information Server 5.1 or higher displays during installation If you see the following screen during installation, you need to install the Application Development and IIS6 Management Compatibility roles Make sure you have installed the following roles in Server Manager. Copyright 2017 CionSystems Inc., All Rights Reserved Page 19

Go to Control Panelclick on Turn Windows features on or off under ProgramsSelect Roles under Server ManagerClick on Add Roles link button. Add Roles wizard will be startedselect Server Roles link buttonconfigure the Application Development and IIS6 Management Compatibility roles as shown below: Copyright 2017 CionSystems Inc., All Rights Reserved Page 20

After installing the roles, restart the server to apply the changes. 4. Changing Application pool Identity for DefaultAppPool in IISManager In some case, you have to change the application pool identity to the username and password you provided at install. Process is Start Run commandtype inetmgr IIS Manager Window will be opened. Go to Application PoolsDefaultAppPoolright click and select Advanced SettingsSelect Identity under Process Modelclick on ellipsis buttonselect Custom account click on Set Provide User name, Password and Confirm password detailsclick OKclick OK Copyright 2017 CionSystems Inc., All Rights Reserved Page 21

Copyright 2017 CionSystems Inc., All Rights Reserved Page 22

5. Error: Server Error in /Cloud Identity Minder Application If the login fails after trying admin & admin (without quotes): see the solution below Start the sql server management studio and note the sql connection string and username. You have to provide this username during the install of Cloud Identity Minder (refer page 7 - Application Authentication popup window). Otherwise whatever username you provided you have to provide SQL privileges. Also, check the IIS role and ensure the Windows and Basic authentication are enabled. Copyright 2017 CionSystems Inc., All Rights Reserved Page 23

6. Error: SQL Login failed during the database configuration of application SQL Login fails This can happen because the firewall is blocking ports. Check the firewall and SQL to ensure the right SQL ports are open. Probably TCP/IP channel is disabled under SQL Server Configuration Manager. So go there and enable all TCP/IP options Below is an example Click on start All programsmicrosoft SQL Server 2008 R2Click on Configuration ToolsClick on SQL Server Configuration Manager Copyright 2017 CionSystems Inc., All Rights Reserved Page 24

Make sure all TCP/IP channels are enabled Make sure TCP/IP Port has 1433 Copyright 2017 CionSystems Inc., All Rights Reserved Page 25

Select TCP/IP, go to properties, in properties window select IP Addresses tab. In IP1 set TCP Port as 1433 and in IPAll set TCP port as 1433, Click on OK Restart SQLServer and SQL Server Browser services To open above ports in Windows firewall, run the below command from command prompt netsh advfirewall firewall add rule name = SQLPort dir = in protocol = tcp action = allow localport = 1433 remoteip = localsubnet profile = DOMAIN Connecting to remote database: To connect remote database, please check the following settings: 1. Make sure SQL Browser Service is in running state in SQL Server Configuration Manager Copyright 2017 CionSystems Inc., All Rights Reserved Page 26

2. Check is if Remote Connections are enabled on your SQL Server database. Connect to the server, right click the server and open the Server Properties. Navigate to Connections and ensure that Allow remote connections to this server is checked. Copyright 2017 CionSystems Inc., All Rights Reserved Page 27

3. In firewall enable UDP port (By Default 1434) for SQL Browser Open the Control Panel and navigate to Windows Firewall. Copyright 2017 CionSystems Inc., All Rights Reserved Page 28

Click on Advanced Settings on the left hand side and you should see the Windows Firewall with Advanced Security. Select the Inbound Rules on the left hand side and click on New Rule on the right hand side. This opens the New Inbound Rule Wizard, under the Rule Type choose Port and click the Next button Copyright 2017 CionSystems Inc., All Rights Reserved Page 29

Select the UDP protocol and in the Specific local ports enter port number 1434. To proceed with the settings SQL Browser services, click the Next button In the Action dialog choose Allow the connection and click the Next button Copyright 2017 CionSystems Inc., All Rights Reserved Page 30

In the Profile dialog choose all three profiles and click the Next button Give the rule a name as SQL Browser and click the Finish button. Copyright 2017 CionSystems Inc., All Rights Reserved Page 31

Note: To connect to remote database through windows authentication, the system must be member of that domain and that domain user has to be added in SQL database security logins Windows Server 2012 1. Error: Installation Incomplete displays during installation If you see the following screen during installation, you need to install the Application Development and IIS6 Management Compatibility roles. Copyright 2017 CionSystems Inc., All Rights Reserved Page 32

Make sure you have installed the following roles in Server Manager. Copyright 2017 CionSystems Inc., All Rights Reserved Page 33

Click Server Manager on task bar to open, if not available on task bar then click the Start button to open the start screen. In start screen you can see the Server Manager In Server Manager window, click Manager tab and select Add Roles and Features Click Server Selection, click Next In Server Roles, install the Application Development and IIS6 Management Compatibility roles as shown below: Copyright 2017 CionSystems Inc., All Rights Reserved Page 34

Click Next Copyright 2017 CionSystems Inc., All Rights Reserved Page 35

In Features, make sure.net Framework 3.5 & 4.5 features are installed, if they were not installed configure them as shown below to install. Click Install button After installation completed, click Close button Restart the server to apply the changes Now try to install the application. Windows Server 2016 1. Error: Installation Incomplete displays during installation If you see the following screen during installation, you need to install the Application Development and IIS6 Management Compatibility roles Copyright 2017 CionSystems Inc., All Rights Reserved Page 36

Make sure you have installed the following roles in Server Manager. Click Server Manager on task bar to open, if not available on task bar then click the Start button to open the start screen. In start screen you can see the Server Manager Copyright 2017 CionSystems Inc., All Rights Reserved Page 37

In Server Manager window, click Manager tab and select Add Roles and Features Copyright 2017 CionSystems Inc., All Rights Reserved Page 38

Click Server Selection, click Next In Server Roles, install the Application Development and IIS6 Management Compatibility roles as shown below: Copyright 2017 CionSystems Inc., All Rights Reserved Page 39

Click Next In Features, make sure.net Framework 3.5 & 4.6 features are installed, if they were not installed configure them as shown below to install. Click Install button After installation completed, click Close button Restart the server to apply the changes Now try to install the application. Copyright 2017 CionSystems Inc., All Rights Reserved Page 40

Contact Notes: For technical support or feature requests, please contact us at Support@CionSystems.com or 425.605.5325 For sales or other business inquiries, we can be reached at Sales@CionSystems.com or 425.605.5325 If you d like to view a complete list of our Active Directory Reporter solutions, please visit us online at www.cionsystems.com Disclaimer The information in this document is provided in connection with CionSystems products. No license, express or implied, to any intellectual property right is granted by this document or in connection with the sale of CionSystems products. EXCEPT AS SET FORTH IN CIONSYSTEMS LICENSE AGREEMENT FOR THIS PRODUCT, CIONSYSTEMS INC. ASSUMES NO LIABILITY WHATSOEVER AND DISCLAIMS ANY EXPRESS, IMPLIED OR STATUTORY WARRANTY RELATING TO ITS PRODUCTS INCLUDING BUT NOT LIMITED TO THE IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, OR NON-INFRINGEMENT. IN NO EVENT SHALL CIONSYSTEMS INC. BE LIABLE FOR ANY DIRECT, INDIRECT, CONSEQUENTIAL,PUNITIVE, SPECIAL OR INCIDENTAL DAMAGES (INCLUDING, WITHOUT LIMITATION, DAMAGES FOR LOSS OF PROFITS, BUSINESS INTERRUPTION OR LOSS OF INFORMATION) ARISING OUT OF THE USE OR INABILITY TO USE THIS DOCUMENT, EVEN IF CIONSYSTEMS INC. HAS BEEN ADVISED IN WRITING OF THE POSSIBILITY OF SUCH DAMAGES. CionSystems may update this document or the software application without notice. CionSystems Inc 6640 185 th Ave NE, Redmond, WA-98052, USA www.cionsystems.com Ph: +1.425.605.5325 This guide is provided for informational purposes only, and the contents may not be reproduced or transmitted in any form or by any means without our written permission. Copyright 2017 CionSystems Inc., All Rights Reserved Page 41