Cloud Access Service POC Quick Setup Guide - Step 3: Connect to Active Directory
Add a Connection to Active Directory
Procedure
- In the Cloud Administration Console, click Users > Identity Sources.
- Click Add an Identity Source > Select next to Active Directory.
- Click Add an Identity Source > Select next to the directory to add.
- Enter the identity source name and root (the base DN for users from the planning worksheet).
- In the SSL/TLS Certificate section, unselect Use SSL/TLS encryption to connect to the directory servers.
- In the SSL/TLS Certificates section:
- Select Use SSL/TLS encryption to connect to the directory servers.
- Click Add and select the SSL/TLS certificate.
- In the Directory Servers section, add each directory server in the identity source, and test the connection.
- Click Next Step.
- On the User Attributes page, click Refresh Attributes, and verify that a valid list of attributes appears.
Select Use selected policy attributes with the Cloud Authentication Service.
In the Policies column, select memberOf, sAMAccountName, virtualGroups, and any other attributes that you might use to identify users.
- Click Next Step.
In the User Search Filter field, specify your test group using a filter. The following is an Active Directory example:
(&(objectCategory=Person)(sAMAccountName=*)(objectClass=user)(mail=*)(memberOf=<yourgroup_distinguishedName>))
Where <yourgroup_distinguishedName> is the name of your test administrator group.
For example, (&(objectCategory=Person)(sAMAccountName=*)(objectClass=user)(mail=*)(memberOf=CN=SecurIDAccessUsers,OU=Groups,DC=Corp,DC=local))
- Click Save and Finish.
- Click Publish Changes.
Synchronize Active Directory for Cloud Access Service
Synchronize data between Cloud Access Service (CAS) and your LDAP directory to ensure that CAS reflects any updates made to the LDAP directory.
During synchronization, users are added and attribute values that you selected in the previous step are copied to CAS. User passwords are not synchronized.
Procedure
- In the Cloud Administration Console, click Users > Identity Sources.
- Next to your identity source, select Synchronization from the drop-down menu.
In the Identity Source Details section, click Synchronize Now.
Depending on the number of users you are synching, this process can take a number of minutes.
Cloud Access Service POC Quick Setup Guide - Step 4: Add an Access Policy
Related Articles
RSA Cloud Authentication Service Initial Setup Videos 28Number of Views RSA SecurID Access Free Trial Quick Setup Guide 87Number of Views RSA Cloud Authentication Service Deployment Overview 48Number of Views Cloud Access Service POC Quick Setup Guide 175Number of Views Getting Started with Quick Setup for Cloud Access Service 132Number of Views
Trending Articles
How to recover the Application and AFX after an unexpected database failure in RSA Identity Governance & Lifecycle RSA Release Notes for RSA Authentication Manager 8.8 RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Troubleshooting AFX Connector issues in RSA Identity Governance & Lifecycle RSA Release Notes: Cloud Access Service and RSA Authenticators