LDAP Synchronization Secure Coding Guide

Similar documents
LDAP Synchronization

Configuration Store Setup Guide

VIEVU Solution AD Sync and ADFS Guide

User Management in Resource Manager

SAML with ADFS Setup Guide

Getting started with the Teradata connector

Creating Column Profiles on LDAP Data Objects

ACS 5.x: LDAP Server Configuration Example

ADFS Setup (SAML Authentication)

Grandstream Networks, Inc. LDAP Configuration Guide

Alaska Airlines Developer Portal

Managing User Roles and Users in LMS

SAP Process Mining by Celonis. Installation Guide. Version 1.2 Corresponding Software Version: 4.0

Please review the Infoblox CCS Scripting Guide for more information on the above optional statements

<Partner Name> <Partner Product> RSA SECURID ACCESS. VMware Horizon View 7.2 Clients. Standard Agent Client Implementation Guide

ServiceNow Deployment Guide

First Data ServiceCenter Web

Guide to your CGIAR Network account Self Service tool

How does it look like?

You can also consult the USER MANAGEMENT guide on the site web of TRACES. 1. What is TRACES? Trade Control and Expert System 2

How to Integrate an External Authentication Server

WebDAV. Overview. File Permissions and Management. Authentication Methods

Microsoft Outlook Live

Remote Desktop How to guide

Persistent Data Transfer Procedure

Appstore Publisher Manual.

MULTI FACTOR AUTHENTICATION USING THE NETOP PORTAL. 31 January 2017

The Multi Domain Administrator account can operate with Domain Administrator privileges on all associated Domain Administrator users.

EUSurvey OSS OpenCas installation guide (LDAP & SSO)

Ekran System v.6.0 Privileged User Accounts and Sessions (PASM)

Active Directory Integration and Interaction with Connect ONSITE

Basic FXS Gateway Configuration

InfoRouter LDAP Authentication Web Service InfoRouter Version 7.5 Active Innovations, Inc. Copyright

Shared Devices Users Guide

TimeCurve QuickBooks Utility User Manual. Version 1.0

Integration Configuration

Automated Background Check System (ABCS)- Approving Access Guide. April 2018

Realms and Identity Policies

Basic SIP Username Registration

Users. LDAP Synchronization Overview

White Paper. Fabasoft on Linux - Fabasoft Folio Web Management. Fabasoft Folio 2017 R1 Update Rollup 1

MyDHFL Access 24*7. How does this work?

Waters Empower 2 Service Pack G

Guide for Partners. Sophos Central Firewall Manager. Document Date: June June 2016 Page 1 of 15

Help Document Series: Connecting to your Exchange mailbox via Outlook from off-campus

Editing your CASet WordPress Site:

SAP Process Mining by Celonis. Installation Guide. Version 1.4 Corresponding Software Version: 4.2

Overview of the Self-Service Portal

UPDATE GUIDE. Version 1.6. Corresponding Software Version. SAP Process Mining by Celonis 4.3

Using CSE Cisco Anyconnect with 2FA

Revised: 08/02/ Click the Start button at bottom left, enter Server Manager in the search box, and select it in the list to open it.

NetScaler Radius Authentication. Integration Guide

To Activate your Wireless Account

Basic SIP Unit Registration

DIGIPASS Authentication to Citrix XenDesktop with endpoint protection

Connect-2-Everything SAML SSO (client documentation)

Application Users and End Users

NotifySCM Workspace Administration Guide

Security Provider Integration: Kerberos Server

Panasonic Configuration Guides

Enabling the Bullhorn and Calendar Integration with Google Apps

RWANDA DEVELOPMENT BOARD TOURISM LICENSING SYSTEM

WebEx Integration User Guide. Cvent, Inc 1765 Greensboro Station Place McLean, VA

Commissioner of Geology and Mining Quarry Permit

HPE IMC UAM LDAP Authentication Configuration Examples

From the User Profile section of your employer account, select User Profile and enter your new password.

Integrating YuJa Enterprise Video Platform with LDAP / Active Directory

akkadian Global Directory 3.0 System Administration Guide

User Manual for Academic Information Management System

IPitomy IP PBX Server: Cyberdata VoIP V2 Ceiling Speaker Configuration Guide

Integration Configuration

Contents. Introduction To CloudSync. 2. System Requirements...2. Installing CloudSync 2. Getting Started 4

RoomView Server Edition Release Notes

Whitepaper. Product: combit Relationship Manager / Report Server. Windows Authentication with PostgreSQL

Excel2MDB Importer Documentation

FRM FOR OUTLOOK PLUGIN INSTALLATION GUIDE FRM Solutions, Inc.

BMW Group ebox Partner Archive Hotline

The information in this document is based on these software and hardware versions:

VMware AirWatch Google Sync Integration Guide Securing Your Infrastructure

Mindbreeze InSpire Appliance Setup

Host Access Management and Security Server Administrative Console Users Guide. August 2016

ETI/Domo. English. ETI-Domo Config EN

Authentication and Authorization in Enterprise Wikis

NETOP PORTAL ADFS & AZURE AD INTEGRATION

How to Configure Authentication and Access Control (AAA)

AAA and the Local Database

StorSimple Appliance Quick Start Guide for Software Version 1.2.1

User Manual Appointment System

SAP Value Lifecycle Manager- Customer Quick Start Guide. March, 2017

RAK ICC PORTAL 09 &10 JANUARY 2017 FREQUENTLY ASKED QUESTIONS

Connecting to the NJITSecure wireless network.

Using Synchronization in Profiling

ChemDraw Mobile ASL. Administrator Guide

Compassionate Use Registry

Read Naturally SE Update Windows Network Installation Instructions

Step 1: Accessing the account

How to Use RentalPoint Web Services

Windows Authentication for Velocity Web service Client

MOMBASA COUNTY. e-construction PERMIT USER MANUAL FOR FRONTEND USERS

Employee Guide. Frequently Asked Questions & Answers

Transcription:

1] User Documentation (English) Celonis Discovery LDAP Synchronization Secure Coding Guide Version 1.3 Version 1.0 Corresponding Software Version: 4.2 This This document document is copyright is copyright of the of the Celonis Celonis GmbH. SE. Distribution or reproduction are only permitted permitted by by written written approval approval of the of Celonis the Celonis SE. Usage GmbH. only Usage permitted, only permitted, if a valid software if a valid license software is available. for Celonis Discovery is available. license This document is copyright of the Celonis GmbH. Distribution or reproduction are only permitted by written approval of the Celonis GmbH.

CONFIGURING LDAP-SYNCHRONIZATION I. ADDING BASIC USER SYNCHRONIZATION ON OU-LEVEL 1. Login to the web frontend of your Celonis-Installation 2. In the administration menu select System Settings (Figure 1) Figure 1 3. Open the Source Configuration and Add a new LDAP source (Figure 2) Figure 2 2017 Celonis SE LDAP Synchronization 2

4. Enter the connection data of your LDAP-Source, where your user accounts can be found according to the format shown in Figure 3 and click the save button. Note that you have to specify the search base on OU-Level. Figure 3 5. Switch to the User Provider Tab to add a new User Provider 2017 Celonis SE LDAP Synchronization 3

6. Enter the requested information to the corresponding fields. The fields Username Attribute and your previously created LDAP Source are mandatory fields. Note that by default, the synchronization runs every hour. If you want to increase the time between synchronization you can do this by modifying the Hours delay field. Figure 4 2017 Celonis SE LDAP Synchronization 4

7. Save and Test your configuration. The response should look similar to the message in Figure 5. Otherwise you should review your configuration. Note that the number of returned entries depend on the number of users you have in the OU specified in step 4. Figure 5 8. You are now able to synchronize the Users in the given OU with Celonis by pressing the Execute all button. Figure 6 2017 Celonis SE LDAP Synchronization 5

II. IMPLEMENTING GROUP BASED USER SYNCHRONIZATION 9. Before you can configure the group based synchronization you have to create corresponding groups in Celonis. You can find this option in the administration menu (Figure 7) Figure 7 10. Add a new Celonis Group (e.g. Analysts) 11. If your LDAP-Groups are located in a different OU than your users, you have to add another LDAP-Source. To do so, repeat Step 4 and set the LDAP Search Base to the OU where your LDAP-Groups are located. Figure 8 2017 Celonis SE LDAP Synchronization 6

12. Switch to the Group Provider tab and Add new Group Provider Figure 9 2017 Celonis SE LDAP Synchronization 7

13. Provide the needed data: a. As LDAP Source select your LDAP-Group-Source you created at step 12. b. As LDAP user provider select the User Provider you created at step 6. c. Save your configuration Note: By default, the synchronization runs every hour. If you want to increase the time between synchronization you can do this by modifying the Hours delay field. Figure 10 14. Add a new Group Mapping, type in the name of the LDAP-Group containing your users and select the corresponding group you created in Step 10. Note: Nested groups are currently not supported. So be sure your users are located on the 1 st level of the provided group. Figure 11 15. Save your configuration by clicking the Save Button. 2017 Celonis SE LDAP Synchronization 8

16. If you switch back to the User Provider and hit the Test-Button again, the response should be narrowed down to the number of users located in the group you defined at Step 14. Figure 12 17. You re now able to synchronize your users based on the groups specified in step 13 by clicking on Execute all. III. ADDING LDAP-AUTHENTICATION 18. In order to allow your users to log into Celonis with their familiar credentials you have to configure the LDAP authentication in the Authentication tab. 19. Add a new LDAP-Provider 20. Select one of your previously created LDAP sources and the User Provider you created at step 6. 21. You are now able to use your LDAP credentials at the normal login mask to log into Celonis. 2017 Celonis SE LDAP Synchronization 9