August 25, 20151 SSO with Microsoft Active Directory Presented by: Craig Larrabee.

Slides:



Advertisements
Similar presentations
Quick Start Guide. To setup another account (aside from the school ) 1) Tap “Settings”
Advertisements

© 2009 GroundWork Open Source, Inc. PROPRIETARY INFORMATION: Information contained herein is not for use or disclosure outside of GroundWork Open Source,
Web Filtering. ExchangeDefender Web Filtering provides policy-controlled protection from dangerous content on the web. Web Filtering is agent based, allowing.
SmartCall™ SMS SmartCall SMS by HME Wireless is a great tool to manage your patient workflow through your facility. Using the SmartCall SMS system, staff.
Microsoft Excel 2003 Illustrated Complete Excel Files and Incorporating Web Information Sharing.
FIspace Security Components FIspace Security Components NetFutures 2015 FIspace project Javier Romero Negrín Javier Hitado Simarro ATOS Serdar Arslan KoçSistem.
1 Configuring Internet- related services (April 22, 2015) © Abdou Illia, Spring 2015.
Module 6: Configuring Windows XP Professional to Operate in a Microsoft Network.
SmartCall™ Messenger Account Setup
Peter Ginnegar Technical Solution Professional Microsoft Corporation
1 Configuring Web services (Week 15, Monday 4/17/2006) © Abdou Illia, Spring 2006.
What is ERoom? Created August 5, Agenda How to log in Directory structure –RFI –Class directories –Team directories How to download/upload files.
DVG-N5402SP.
Enterprise Single Sign On Identity management for web applications.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
Remote Accessing Your Home Computer Using VNC and a Dynamic DNS Name.
1 Mapping a Drive on the USF IIS Server. 2 Mapping a Drive To map a drive to a network file directory in Windows you must be on a Microsoft local area.
VPN Scenarios © N. Ganesan, Ph.D.. Chapter Objectives.
REMOTE ACCESS Research Data Management. On Campus There are two networks – the staff network and the student network. Staff network: Access to the shared.
Hosted Exchange The purpose of this Startup Guide is to familiarize you with ExchangeDefender's Exchange and SharePoint Hosting. ExchangeDefender.
03/07/08 © 2008 DSR and LDAP Authentication Avocent Technical Support.
Edwin Sarmiento Microsoft MVP – Windows Server System Senior Systems Engineer/Database Administrator Fujitsu Asia Pte Ltd
Slide Master Layout Useful for revisions and projector test  First-level bullet  Second levels  Third level  Fourth level  Fifth level  Drop body.
Test Review. What is the main advantage to using shadow copies?
Microsoft Windows 2003 Server. Client/Server Environment Many client computers connect to a server.
Configuring a Web Server. Overview Overview of IIS Preparing for an IIS Installation Installing IIS Configuring a Web Site Administering IIS Troubleshooting.
Session 5: Working with MySQL iNET Academy Open Source Web Development.
Lectures and Practicals Mon 8-10 SC1222 TUE SC1222 Office: SC Website: mis.csit.sci.tsu.ac.th/kanida.
1 HTML (Set Up Public Folder) Some material on these slides is taken directly from
Document Management CategoryTracking Information Company:Citrix Systems, Inc. Author(s):Adolfo Montoya Owner(s):Worldwide Support Readiness Last modified:2/20/2012.
CPSC203 Introduction to Computers Lab 69 By Jie Gao.
Chapter 1: Introduction to Web Applications. This chapter gives an overview of the Internet, and where the World Wide Web fits in. It then outlines the.
Copyright 2000 eMation SECURITY - Controlling Data Access with
1 Session 1: Introduction to HTML Spring Today’s Agenda Cover useful terminology for today’s session HTML, browsers, servers, etc. HTML Tags Get.
IT:Network:Apps.  Microsoft Web Server ◦ Used by ~ 50% of Fortune 500 companies  Comes with Server OS  Expandable  Easy to use.
Embedding CenterView and Hosting External Content.
Course ILT Internet/intranet support Unit objectives Use the Internet Information Services snap-in to manage IIS, Web sites, virtual directories, and WebDAV.
Chapter 1: The Internet and the WWW CIS 275—Web Application Development for Business I.
1 © 2004, Cisco Systems, Inc. All rights reserved. CISCO CONFIDENTIAL Using Internet Explorer 7.0 to Access Cisco Unity 5.0(1) Web Interfaces Unity 5.0(1)
The Internet and World Wide Web
Microsite Training. Today: Presentation (slides will be sent to the group) Examples with LRADGs microsite Troubleshooting Questions.
The Inter-network is a big network of networks.. The five-layer networking model for the internet.
Links2keep - Turtorial. Links2keep It´s here all your links will be displayed. Those being displayed now will be removed when you register your own account.
EMC/Iomega TZO Portal Addendum to TZO Troubleshooting By Erik Collett
Milestone SAP Portal Learning at the Lakes August 12, 2009.
LDAP Authentication Copyright © Liferay, Inc. All Rights Reserved. No material may be reproduced electronically or in print without written permission.
Module 11: Securing a Microsoft ASP.NET Web Application.
Turning Windows 7 into a Web Server Ch 28. Understanding Internet Information Services.
Securing Sensitive Information Data Security Dashboards often contain the most important data in the company Securing that information makes business.
DHP Agenda: How to Access Web Interface of the DHP-1320 on Access Point Mode How to Access Web Interface of the DHP-1320 on Router Mode How to Change.
Web Access. Overview  Purpose  Prerequisites  Install Components  Enable Virtual Directories  IIS Configuration & Security  Troubleshooting.
Getting Started Introduction Section 0 Lecture 1 Slide 1 Section 0 Slide 1 INTRODUCTION TO Modern Physics PHYX 2710 Fall 2004 Intermediate Lab Fall.
1 Chapter Overview Creating Web Sites and FTP Sites Creating Virtual Directories Managing Site Security Troubleshooting IIS.
Avaya Communicator for Web Demo Installation
Navigating the Course 1. Course Materials 2 Software: Notepad (or TextEdit on a Mac) – comes with operating system Internet Explorer Web Browser FireFox.
Integrity Check As You Well Know, It Is A Violation Of Academic Integrity To Fake The Results On Any.
Multi-Domain Hosting CPTE 212 “Missing Slides” for 1/22/2015 John Beckett.
Business Objects XIr2 Windows NT Authentication Single Sign-on 18 August 2006.
Installing and Configuring Moodle. Download Download latest Windows Install package from Moodle.orgMoodle.org.
1 E-Site - FTP Services Setup / install guide. 2 About FTP services can run on any desired port(s) Runs as a windows service Works for all sites installed.
Using Your Own Authentication System with ArcGIS Online
The Student Classlink Dashboard
Welcome to the 20th Anniversary of the IUG
Quickr-J Integration with the IBM portfolio (Notes, Sametime, Connections, ECM & WebSphere Portal) Quickr SVT - Mark Curran.
Officeinstall-setup.com Technical expert studying and writing helpful articles on antivirus and other security products.
Cloud Connect Seamlessly
IIS.
Configuring Internet-related services
Access eJournals Form Your Home
Device Registration and Multi-Factor Authentication
Presentation transcript:

August 25, SSO with Microsoft Active Directory Presented by: Craig Larrabee

This will allow CenterView to determine what user has signed into an Active Directory Domain, and based on that user, get the groups that user is a member of based on the existing Active Directory Authentication plugin. August 25, 20152

Server Setup Perform on the server –Drop jcifs jar into /Server/corda/WEB-INF/lib/ August 25, 20153

Server Setup Perform on the server Add the contents of AD_SSO_Filter.txt to the beginning of the filter section of /Server/corda/WEB-INF/web.xml Add the contents of AD_SSO_Filter.txt to the beginning of the filter mapping section of /Server/corda/WEB-INF/web.xml August 25, 20154

Server Setup Perform on the server Set the Domain controller address, Domain Name, Username and Password (same as Bind User and Password in AD Auth Plugin) jcifs.http.domainController: enter the DNS or IP address of the LDAP Server (e.g , or server.domain.com) jcifs.smb.client.domain: Enter the domain of the server you are authenticating against (e.g. corda.com) jcifs.smb.client.username:Enter an app account without the domain name (e.g. binduser NOT jcifs.smb.client.password: app account’s password August 25, 20155

Server Setup Perform on the server Optional parameter for enabling logging jcifs.util.loglevel: 0=off-10=verbose default=1 jcifs.util.loglevel 3 Information is sent to the standard CenterView logs August 25, 20156

Server Setup Perform on the server Modify the authenticate method of /Server/plugins/src/examples/auth/activedirectory/ADAuth Plugin.java to use request.getRemoteUser() as the userName (compare the included ADAuthPlugin.java with the one installed with CenterView) Build the Auth Plugin and put the class file in the correct directory NOTE: I suggest creating a new auth plugin and copying the existing ADAuthPlugin source rather than just modifying the existing one. August 25, 20157

Web Browser Perform the steps in the following slides in the browser 8/25/20158

Add the URL to the Local Intranet Zone in Internet Explorer August 25,

Add the URL to the network.automatic-ntlm- auth.trusted-uris in Firefox August 25,