Smart Card Authentication Guide

Similar documents
Smart Card Authentication Guide

Client Certificate Authentication Guide. June 28, 2018 Version 9.4

Client Certificate Authentication Guide

Remove Documents from Batch Sets V2.1

Track Document Field Edits by Reviewer V5.0

Client SSL Integration Guide

Event Handler Express Guide

Managing Relativity SQL log files

Metrics Guide. March 29, Version

Managing Relativity SQL log files

Pre-Installation Guide

Creating Dynamic Objects

Workstation Configuration

Fact Manager Guide. v7.5. May 10, For the most recent version of this document, visit kcura's Documentation Site.

Workstation Configuration

Workstation Configuration

Workstation Configuration Guide

Workstation Configuration

Solving Review Case Challenges with Analytics

Processing Troubleshooting Guide

Fact Manager Guide. March 23, Version 8.2

Relativity's mobile app Guide

Performance Dashboard Guide

System Requirements. Version 8.2 May 2, For the most recent version of this document, visit our documentation website.

System Requirements. Version 8.1 March 2, For the most recent version of this document, visit our documentation website.

System Requirements. v7.5. May 10, For the most recent version of this document, visit kcura's Documentation Site.

Installation Guide. July 13, 2018 Version 9.4. For the most recent version of this document, visit our documentation website.

Relativity's mobile app Guide. March 2, 2016 Version

Relativity's mobile app Guide

INSTALLATION GUIDE Spring 2017

ActivIdentity ActivID Card Management System and Juniper Secure Access. Integration Handbook

Sending Secure and Encrypted Messages with GroupWise 6.5: User s Guide

Integration Guide. LoginTC

NetScaler Radius Authentication. Integration Guide

Cloud Access Manager How to Configure for SSO to SAP NetWeaver using SAML 2.0

XIA Configuration Server

Xcalenets Console Setup Guide. Xcalenets Console Setup Guide (Standalone version)

Managed Access Gateway Third-Party Credential User Guide August 2017

Media Writer. Installation Guide LX-DOC-MW5.1.9-IN-EN-REVB. Version 5.1.9

Citrix Access Gateway Implementation Guide

2016 Infoblox Inc. All rights reserved. Implementing AWS Route 53 Synchronization Infoblox-DG January 2016 Page 1 of 8

Implementation Guide for protecting Juniper SSL VPN with BlackShield ID

Migrating to MIL-Comply SQL Server Edition

Chime for Lync High Availability Setup

Configuring Role-Based Access Control

Service Bus Guide. November 14, 2018 Version 9.4. For the most recent version of this document, visit our documentation website.

Installation Guide. 3CX CRM Plugin for ConnectWise. Single Tenant Version

MULTI FACTOR AUTHENTICATION USING THE NETOP PORTAL. 31 January 2017

Administration Guide

Web CCaR Login Troubleshooting Guide

Installation Guide. February 6, Version

PTC Navigate Manage Traces Installation and Configuration Guide PTC Navigate Manage Traces 1.0 with Integrity Lifecycle Manager and Windchill

Avaya Event Processor Release 2.2 Operations, Administration, and Maintenance Interface

BeAware Corporate Edition Admin Console. User Manual. BeAware Corporate Edition Admin Console Version 7.1. Ascentive LLC.

FIA Electronic Give-Up Agreement System (EGUS) Version 2.6

Novell Identity Manager

Adding images to account Report Designer Sections Categories Report title Graphs. Customization Tips for Your Extended DISC Reports

Guardium UI Login using a Smart card

Workspace ONE UEM Certificate Authentication for Cisco IPSec VPN. VMware Workspace ONE UEM 1810

VSP16. Venafi Security Professional 16 Course 04 April 2016

Multifactor Authentication Installation and Configuration Guide

Single File Upload Guide

Desktop LP - Connect Guide. Version 2.1 February 2016

Configuring PPP And SIP

DIGIPASS Authentication for NETASQ

STRS OHIO F5 Access Client Setup for ChromeBook Systems User Guide

Using vrealize Operations Tenant App as a Service Provider

DOCUMENTATION MICROSOFT EXCHANGE INDIVIDUAL BRICK LEVEL BACKUP & RESTORE OPERATIONS

FIA Electronic Give-Up Agreement System (EGUS) Version 2. Administrator Guide

Barracuda Networks NG Firewall 7.0.0

Avaya Converged Platform 130 Series. idrac9 Best Practices

VMware AirWatch Certificate Authentication for Cisco IPSec VPN

Common Access Card for Xerox VersaLink Printers

BlackBerry AtHoc Networked Crisis Communication. Self Service User Guide

29 March 2017 SECURITY SERVER INSTALLATION GUIDE

WebEx Integration User Guide. Cvent, Inc 1765 Greensboro Station Place McLean, VA

Integrate Saint Security Suite. EventTracker v8.x and above

Grant Minimum Permission to an Active Directory User Account Used by the Sourcefire User Agent

Yubico with Centrify for Mac - Deployment Guide

Minimum requirements for Portal (on-premise version):

Nimsoft Service Desk. Single Sign-On Configuration Guide. [assign the version number for your book]

KeyNexus Hyper-V Deployment Guide

Integration Guide. SafeNet Authentication Service. Strong Authentication for Juniper Networks SSL VPN

BLUEPRINT TEAM REPOSITORY. For Requirements Center & Requirements Center Test Definition

BeAware Corporate Edition Admin Console Version 6.8 Ascentive LLC

System Requirements. December 22, Version 9.2

4TRESS AAA. Out-of-Band Authentication (SMS) and Juniper Secure Access Integration Handbook. Document Version 2.3 Released May hidglobal.

AEM Mobile: Setting up Google as an Identity Provider

SafeNet Authentication Service

Deltek Touch Expense for Ajera. Touch 1.0 Technical Installation Guide

NTP Software File Auditor for Windows Edition

Avaya Web Conferencing Administrator's Guide

Entrust Connector (econnector) Venafi Trust Protection Platform

Cloud Access Manager Configuration Guide

DoD Common Access Card Authentication. Feature Description

Integrated Cloud Environment Concur User s Guide

MAX Workbench. Balance Point Technologies, Inc. MAX Workbench. User Guide. Certified MAX Integrator

A S C E R T I A LTD D O C U M E N T V E R S I O N - 1.2

Message Networking 5.2 Administration print guide

Connecting to the NJITSecure wireless network.

Transcription:

Smart Card Authentication Guide January 29, 2018 - Version 9.2 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - For the most recent version of this document, visit our documentation website.

Table of Contents 1 Smart card authentication 3 2 Smart card authentication prerequisites 3 3 Configuration value for smart card authentication 3 4 Configuring a user for smart card authentication 4 4.0.1 9.2.600.19 and above 4 4.0.2 Version and below 5 5 Logging in to Relativity with a smart card 5 Relativity Smart Card Authentication Guide - 2

1 Smart card authentication Relativity supports smart card authentication, such as the use of a personal identity verification (PIV) card. This two-factor authentication option is also is also called client certificate authentication. It uses a certificate stored on a smart card and a PIN. When logging in to Relativity, the user inserts a PIV card into the card reader, clicks a PIV login button, selects the appropriate certificate on the PIV card, and then enters a PIN. 2 Smart card authentication prerequisites Before you configure users for smart card authentication, complete the following tasks: Obtain admin access to your Relativity installation. Verify a valid server certificate is configured on web server hosting Relativity. Make sure that each user who you want to set up for smart card authentication is issued a PIV card that contains a certificate signed by the appropriate issuer. See Configuring a user for smart card authentication on the next page. 3 Configuration value for smart card authentication To enable smart card authentication in your Relativity environment, you must update the configuration called UseSmartCardAuthenticationCaption. When you update this settings, you enter the text that you want displayed on the button used for smart card authentication on the Login dialog. If you leave this configuration value blank, then the External Login section containing this button won t be displayed. For more information, see the Configuration Table Guide. You can now configure users for smart card authentication by updating their profiles through the User tab. Relativity Smart Card Authentication Guide - 3

4 Configuring a user for smart card authentication Within Relativity, you configure smart card authentication at the user level. Make sure that you have updated the configuration value for your Relativity environment. See Configuration value for smart card authentication on the previous page. Before you begin, obtain the value in the Subject Alternative Name field of the certificate generated for a user. Contact your system or other administrator responsible for generating these certificates in your organization for this information. See Smart card authentication prerequisites on the previous page. The procedure is different depending on the version of Relativity 9.2. 4.0.1 9.2.600.19 and above 1. Log in to Relativity with system admin credentials. 2. Select Home from the user drop-down menu. 3. Click the Users tab. 4. Click the Edit link next to an existing username, or create a new user. See Users on the Relativity 9.2 Documentation site. 5. In the Login Method section, click New to open the Login Method Information form. 6. Select a Smart Card Provider. 7. In the Certificate Subject field, enter <Subject Alternative Name>. The Subject Alternative Name is associated with the certificate on the smart card used to login to Relativity. For example, if the Subject Alternative Name is jsmithr@example, then you would enter jsmithr@example in the Certificate Subject field. 8. Click Save. Relativity Smart Card Authentication Guide - 4

4.0.2 Version and below 1. Log in to Relativity with administrator permissions. 2. Select Home from the user drop-down menu. 3. Click the Users tab. 4. Click the Edit link next to an existing username, or create a new user. See Users on the Relativity 9.2 Documentation site. 5. In the User Information section, enter the value for Subject Alternative Name field on the user's certificate in the Authentication Data field. Make sure that the value entered in the Authentication Data field includes all the characters to the right of the equals sign (=) in the Subject Alternative Name field. If you use a tool such as OpenSSL to generate certificates, use the string that appears after the characters DNS Name= as the value for the Authentication Data field. Depending on the tool used to create the certificate, the value of the Subject Alternative Name field may contain other characters than DNS Name= as used in the following screen shot. For example, if the Subject Alternative Name field displays DNS Name=jsmith@example.com, enter jsmith@example.com in the Authentication Data field. See the following screen shot: 5 Logging in to Relativity with a smart card You can log in to Relativity by inserting your PIV card into your smart card reader, selecting a certificate, and entering your PIN. Use the following steps to log in to Relativity: 1. Insert your PIV card into the smart card reader for your computer. 2. Browse to your Relativity website with the URL provided by your Relativity admin. 3. Enter your email address in the Username box and click the button under the External Login heading. Your Relativity admin may have customized the label on the button for your Relativity application. Relativity Smart Card Authentication Guide - 5

4. On the Select a certificate dialog, highlight the certificate used for logging in to Relativity. Click OK. 5. Enter your PIN for your smart card, and click OK. Relativity Smart Card Authentication Guide - 6

Proprietary Rights This documentation ( Documentation ) and the software to which it relates ( Software ) belongs to Relativity ODA LLC and/or Relativity s third party software vendors. Relativity grants written license agreements which contain restrictions. All parties accessing the Documentation or Software must: respect proprietary rights of Relativity and third parties; comply with your organization s license agreement, including but not limited to license restrictions on use, copying, modifications, reverse engineering, and derivative products; and refrain from any misuse or misappropriation of this Documentation or Software in whole or in part. The Software and Documentation is protected by the Copyright Act of 1976, as amended, and the Software code is protected by the Illinois Trade Secrets Act. Violations can involve substantial civil liabilities, exemplary damages, and criminal penalties, including fines and possible imprisonment. 2018. Relativity ODA LLC. All rights reserved. Relativity are registered trademarks of Relativity ODA LLC. Relativity Smart Card Authentication Guide - 7