Entrust Cloud Enterprise. Enrollment Guide

Similar documents
Entrust PartnerLink Login Instructions

Document Signing Certificate Getting Started Guide

Soft Token Replacement Guide

Self-Service Portal Registering, downloading & activating a soft token

Entrust. Discovery 2.4. Administration Guide. Document issue: 3.0. Date of issue: June 2014

Installing a CoreStreet Responder

Virtua Dual Authentication Entrust IdentityGuard Enrollment

Virtua Dual Authentication Entrust IdentityGuard Enrollment

Defender Configuring for Use with GrIDsure Tokens

Verizon Registration Process:

Your Adoption Kit for Citrix Workspace Standard

Verizon Registration Process:

PURCHASING AN ENTRUST DATACARD SSL/TLS CERTIFICATE. Document issue: 12.2 Date of issue: July 2017

A S C E R T I A LTD D O C U M E N T V E R S I O N - 1.2

Using the Telstra T-Suite Management Console. Customer Administrator s Reference Manual

PURCHASING AND USING A PERSONAL SECURE CERTIFICATE. Document issue: 12.1 Date of issue: March 2017

Azure MFA Integration with NetScaler

West LegalEdcenter CLE Mobile Access to CLE courses wherever, whenever!

FUJITSU Cloud Service S5. Introduction Guide. Ver. 1.3 FUJITSU AMERICA, INC.

ActivIdentity 4TRESS AAA Web Tokens and F5 BIG-IP Access Policy Manager. Integration Handbook

Apple Business Manager Beta Help v1.0

Partner Ready Portal: New Partner Registration Process

MobiMoney Framework Card Control Card Alerts

Self- Serve Options Quick Reference Guide

Verizon Enterprise Center Registration/Login User Guide

Defender Desktop Login GrIDsure Token User Guide

Business Chat Onboarding Your Business Chat Accounts. September

Table of Contents. Overview of the TEA Login Application Features Roles in Obtaining Application Access Approval Process...

Enhanced new user experience with simple to use navigation and better buying experience. Trade accounts will see current order status, and history

Comodo Device Manager Software Version 4.0

Visa Payments Control

Dell Management Portal. Apple Device Enrollment Program

Sectigo Accounts Management

For Delegates: Creating Your Shared Access Account, Viewing Student Information, and Making a Payment with Shared Access

INFORMATION SHEET CGS CUSTOMER PORTAL REGISTRATION AND LOG IN

IMEI Database. Manufacturer / Brand Owner User Guide. Version September Copyright Notice. Copyright 2015 GSM Association

MFA (Multi-Factor Authentication) Enrollment Guide

Symantec Managed PKI. Integration Guide for AirWatch MDM Solution

Steps for Completing a Download Transaction on the estore and Downloading your Product Update

Sales Order Configurator

Online Documentation. Version 5.2

Authentication Manager Self Service Password Request Administrator s Guide

TABLE OF CONTENTS ACCOUNT REGISTRATION

ALM. Tutorial. Software Version: Go to HELP CENTER ONLINE

How to buy or cancel the XenDesktop Essentials Service

Partner Documentation Reseller Portal Guide

Aruba Central Guest Access Application

ScotiaConnect Registration Quick Reference Guide

Adding Users and Enrolling Devices

PayThankYou LLC Privacy Policy

SafeNet MobilePASS+ for Android. User Guide

PLEXUS PAY PORTAL YOUR HOW-TO GUIDE

Stationery and Promotional Items. User Documentation

MSEDCL e-tendering Contractor Registration Guide

SafeNet Authentication Manager

Oracle Cloud Using the Eventbrite Adapter with Oracle Integration

TechDirect User's Guide for ProDeploy Client Suite

Welcome Guide for MP-1 Token for Microsoft Windows

CaliberRDM. Installation Guide

BYOD Foundation Service. User Guide for ios v1.5

MSEDCL e-tendering Contractor Registration Guide

Online Fax Multi-line Administrator User Guide

HP ALM. Software Version: Tutorial

Patients' FAQs. Patient Portal Version 2.7 NEXTMD.COM

How to Import a Certificate When Using Microsoft Windows OS

International Trade Online

How to Navigate the AHIP Medicare Course. Subject Page #

Entrust Soft Token User Guide. About Entrust Soft Tokens. Installing the Soft Token on a device

Media Writer. Installation Guide LX-DOC-MW5.1.9-IN-EN-REVB. Version 5.1.9

Self-Registration Manual

TIS HELP FOR INDEPENDENT OPERATORS CONTENTS

Online Banking User Guide

Sage Installation and Administration Guide. May 2018

Access Online. Navigation Basics. User Guide. Version 2.2 Cardholder and Program Administrator

Corporate Online. Introducing Corporate Online

One Identity Password Manager User Guide

RB Digital Signature Proxy Guide for Reporters

Licensing Guide. BlackBerry Enterprise Service 12. Version 12.0

The Platform ecommerce Functionality

DOWNLOADING AND LICENSING STEALTHWATCH PRODUCTS

ipad ereader User s Guide

TechDirect User's Guide for ProDeploy Client Suite

Entrust GetAccess 7.0 Technical Integration Brief for IBM WebSphere Portal 5.0

How to Register for Courses (Second Phase: Open Enrollment Registration)

BIDMC Multi-Factor Authentication Enrollment Guide Table of Contents

ADP Security Management Service

How to Navigate the AHIP Medicare Course

API Operator Training and Examination Program. User s Guide

Guide Installation and User Guide - Mac

Managed Access Gateway. User Guide

Multi-Sponsor Environment. SAS Clinical Trial Data Transparency User Guide

DSC Registration and Usage

Two-Factor Authentication for Q-Port

MYTRUST ID ONLINE PORTAL USER GUIDE. Version 1.0

ADP Security Management Service

MyFloridaNet-2 (MFN-2) Customer Portal/Password Management Reference Guide

Managed Access Gateway One-Time Password Guide Version 1.0 February 2017

HP ALM. Software Version: Tutorial

How to Use Google Cloud Print

Managed Access Gateway. User Guide

Transcription:

Entrust Cloud Enterprise Enrollment Guide

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 Copyright 2016 Entrust. All rights reserved. Entrust is a trademark or a registered trademark of Entrust, Inc. in certain countries. All Entrust product names and logos are trademarks or registered trademarks of Entrust, Inc. in certain countries. All other company and product names and logos are trademarks or registered trademarks of their respective owners in certain countries. Obtaining technical support For support assistance by you can email Customer Support at support@entrust.com or visit our Web site at www.entrust.com. This information is subject to change as Entrust reserves the right to, without notice, make changes to its products as progress in engineering or manufacturing methods or circumstances may warrant. Export and/or import of cryptographic products may be restricted by various regulations in various countries. Export and/or import permits may be required. 2

Enrolling in Entrust Cloud Enterprise This guide contains the following sections: Enrolling in Entrust Cloud Enterprise on page 4 The verification process on page 6 Logging in to Entrust Cloud on page 7 What is Entrust Cloud? Any time that you purchase a certificate from Entrust you are automatically enrolled for an Entrust Cloud account. If you purchase five or more certificates from Entrust, you have the option of enrolling for an Entrust Cloud Enterprise account. Entrust Cloud and Cloud Enterprise accounts allow you to purchase and manage an inventory of different types of certificates, according to your needs. 3

Enrolling in Entrust Cloud Enterprise Document issue: 1.0 Enrolling in Entrust Cloud Enterprise Before you can enroll for an Entrust Cloud Enterprise account, you must purchase a minimum of five certificates. Note: You cannot purchase more than 100 certificates online in your initial order. To purchase more than 100 certificates, contact an Entrust Sales representative. Purchasing certificates by credit card To purchase certificates by credit card, you must have a valid Visa, MasterCard, or American Express credit card. Purchasing certificates by purchase order To purchase certificates by purchase order, please contact Entrust Sales at: 1-888-690-2424 (toll free within North America) 1-613-270-3411 (outside of North America) Entrust@Entrust.com Entrust Sales will provide you with a purchase order code that you can use to purchase certificates online. The enrollment and purchasing process will automatically enter your service lifetime, certificate quantities, organizations, and domain name values the in the online enrollment and purchasing forms. Note: If your initial order totals less than $1000.00 you cannot pay by purchase order. Use a credit card to pay for orders totaling less than $1000.00. 4

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 To enroll for the SSL Enterprise Service, purchase five or more certificates. To start the enrollment process, click Buy Now under the Certificate Management Service Price column. Continue through the wizard and complete the purchase. Click the? icon to display help, if required. If you need detailed information about purchasing certificates, separate guides are available. 5

Enrolling in Entrust Cloud Enterprise The verification process Document issue: 1.0 Entrust or an Entrust representative verifies the following information before creating your account: your organization has the legal right to conduct business under the organization name you provided in your order your organization is the registered owner of the domain name you provided in your order your organization name matches your legally registered name, trade name, or a majority-owned subsidiary Note: Entrust can only issue certificates if your organization name matches the organization name provided in your certificate signing requests. the contacts you provided are employed by your organization If the information you provided in your application is correct and complete, verification process typically takes three to five business days. If Entrust encounters any problems verifying the information your provided, Entrust will contact you immediately. Contacts Entrust contacts the people that were listed when you ordered the certificate. For prompt processing of your request, individuals listed as contacts should be prepared to respond as needed. 6

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 Logging in to Entrust Cloud Entrust Cloud supports user name and password as primary authentication. Users have a choice of Entrust IdentityGuard grid, egrid, or soft token as second factor authentication. Question-and-Answer (Q&A) authentication is available as a method of accessing the Entrust IdentityGuard Self-Service application, if other authentication methods are unavailable. Second-factor authentication is mandatory for all users. Users can log in to Entrust Cloud using the URL https://managed.entrust.net. Figure 1: Primary authentication user name and password Topics in this section include: What are soft tokens? on page 7 What are grids? on page 9 Grid expiry on page 10 Configuring login with second factor authentication on page 10 What are soft tokens? Entrust offers a utility for your computer or mobile device that acts like a hardware token. After it is installed and configured, the utility generates a one-time use number (security code) that expires after about 30 seconds. The utility can create multiple identities for authentication to different applications. If you decide to use soft tokens for Entrust Cloud authentication, the second factor challenge asks you for the number created by the Entrust IdentityGuard Soft Token application. 7

Enrolling in Entrust Cloud Enterprise Figure 2: Entrust Cloud soft token challenge Document issue: 1.0 You then trigger the soft token utility, enter the security code into the Security Code field in the log in page and click Submit. The remaining lifetime of the code is indicated by the Lifetime bar below the code. Administrators choosing soft token for second factor authentication require the Entrust IdentityGuard Soft Token utility. The utility is a offered for download at no cost from Entrust Cloud Web site when you configure your account. Installation and registration of the soft token utility is simple and only requires a few moments. Additional information about Entrust IdentityGuard Soft Token application is available from the utility s online help. Figure 3: Application displaying code 8

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 What are grids? Entrust IdentityGuard egrids are graphics that display a grid composed of letters and numbers as shown in Figure 4. A physical grid card is a grid printed on a card and mailed to you by Entrust Datacard. An egrid is a password-secured PDF graphic of an Entrust IdentityGuard grid that you can download when you set up your account. Figure 4: Entrust grid In either case, when you log in to your account you are asked to enter characters from randomly selected positions in your grid (see Figure 5). Figure 5: Grid challenge Use the use the letter (column) and number (row) combinations to locate the characters requested in the challenge and enter them in the space below. Grids in electronic file format (egrids) are available for download from the Entrust Cloud site when you configure your Entrust Cloud account. See Configuring login with second factor authentication on page 10 for detailed information about configuring second factor authentication. 9

Enrolling in Entrust Cloud Enterprise Grid expiry Document issue: 1.0 Entrust IdentityGuard grids and egrids expire 2 years after being issued. Entrust automatically sends a replacement for a physical grid card 60 days before the existing grid card s expiry date. Users who have downloaded an egrid file can download a replacement when the existing grid expires. Configuring login with second factor authentication First-time users receive an email from Entrust confirming the creation of the requested account. Entrust Cloud sends a second email with a one time password providing access to Entrust Cloud. When the new user uses the password to log in to the Web site, they are required to create and change the password and choose and download a form of second factor authentication. The following procedure includes detailed information. To log in to Entrust Cloud as a new user 1 When you enroll as a new user you receive an email from Entrust containing a user name and a separate email with the corresponding temporary password. Click the change password link in the email to open the Entrust Cloud login page in your browser and log in. If you are setting up a new account, the license agreement page appears. This page does not appear if you are adding a user to an existing account. Read through the license agreement and click Accept to agree and continue. If you Decline this agreement, you cannot log into Entrust Cloud. You are redirected to the Entrust IdentityGuard Self-Service Web pages to change your password and obtain second factor authentication. The Password Change page appears. 2 In the Password Change page, type the one-time password that was sent to you by Entrust into the Current Password field. Enter a new password that conforms to the 10

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 Password Rules into the Password field, and again into the Confirm Password field. 3 Click Submit. Note: Passwords expire after one year. After your password expires, you must create a new password the next time you log in. 11

Enrolling in Entrust Cloud Enterprise Document issue: 1.0 4 Select questions from the drop-down list and type your answers into the Answer field below. These questions and answers can be used later as a means of accessing Entrust IdentityGuard Self-Service, if a user cannot use their soft token or grid for some reason. Note: Select questions and answers that are easy to remember but hard for someone else to guess. 5 Click Next. 12

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 6 Entrust Cloud offers soft token or egrid options for second factor authentication. If you decide to use soft token you must download the Entrust IdentityGuard Soft Token application. Click Yes if you already have the application installed and you want to download and use a soft token for second factor authentication. If you selected Yes go to Step 7 h. Click No if you still need to download the application or you want to use the egrid option. 7 If you selected No and you want to use a soft token: Select the link in the Option 1 pane if you are downloading the soft token application to your computer. 13

Enrolling in Entrust Cloud Enterprise Document issue: 1.0 To send instructions for downloading the soft token application to your mobile device (cellular phone, for example) select email from the drop-down list. Note: Your device must have access to the email account used by Entrust Cloud to contact you. The download site detects the type of device you are using and presents you with the option of downloading compatible software. If the option is not correct, use the Not what you re looking for link to select the correct download. 14

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 Note: The following graphics and instructions depict a Windows 7 download and installation. Your installation may vary. a Run the installation program or save and double-click the executable to run the installer. b Click Next. 15

Enrolling in Entrust Cloud Enterprise c Accept the license agreement to continue and click Next. Document issue: 1.0 d Browse to the location where you want the software installed or accept the default location, and click Next. 16

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 e Click Next. f Click Finish to complete the installation. 17

Enrolling in Entrust Cloud Enterprise g Document issue: 1.0 In the Entrust IdentityGuard Self Service application, select I ve successfully downloaded and installed... h Open the Entrust IdentityGuard Soft Token application (Start > All Programs > Entrust > IdentityGuard Soft Token in Windows 7 or Start page > Apps by name > Entrust > IdentityGuard Soft Token in Windows 8.x). A new installation opens to the interface used to create the identity. In an existing soft token utility installation, click Add to open this interface. 18

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 i Copy the highlighted information from the Self Service application page to the soft token as shown in the following graphic. Click Next in the Web page when you are finished. j If you have just installed the utility, set the PIN that you want to use to protect access to the soft token utility. Re-enter it to confirm the PIN when asked. The soft token application displays the registration number 19

Enrolling in Entrust Cloud Enterprise k Document issue: 1.0 Copy the registration number from the soft token utility to the IdentityGuard Self Service page. Click Next. l The IdentityGuard Self Service application displays a success message. The soft token is ready for use. 8 If you selected No and you intend to use an egrid for authentication: 20

Entrust Cloud Enterprise Enrollment Guide Document issue: 1.0 a Select option 2 (I don t have a mobile device or computer that supports...) Click Next. b c When asked, confirm your choice. egrids are password protected. Enter and confirm a password that conforms to the password rules in the Password Rules pane. Each x becomes a check mark if your password conforms to the rule. Click OK when you have finished d In the egrid pane, select Email if you prefer to have a link to the egrid sent to you. This may the useful if you intend to use it from a different device. (The device must have access to the email account used by Entrust Cloud.) Click Download egrid 21

Enrolling in Entrust Cloud Enterprise Document issue: 1.0 to download the egrid to device you are currently using. The default file name is in the format <user_id>-egrid.pdf. Click Next when the download is complete. e You are presented with a list of self-service options. Use your new password and second factor authenticator the next time you log into Entrust Cloud. To change your password or question and answer pairings, click the tools icon in the upper right side of your Entrust Cloud page and select Manage my account from the menu to access your Entrust IdentityGuard Self-Service options. 22