There may be a requirement to protect a PC that is not joined to the domain or even connected to the same network. We have a solution for this. It is fairly easy to set up, but there are a few extra prerequisites needed in order to get this working
Prerequisites
...
| Column |
|---|
Make a note of the host name of the computer. In this case it is 'ABC' |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed Image Removed
|
...
...
Create some local user accounts and make sure the Administrator account is active.
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
Add Logon Steps
...
| Column |
|---|
Select the drop down menu corresponding to the Logon Procedure you will be using and click on Logon Steps. |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
In the Logon Steps Dialogue box, click the
Image Removed button.
...
| Column |
|---|
Tick the desired authentication method, e.g. Static Password |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
Click Save.
...
| Column |
|---|
| I have added two steps; Static Password and One-Time Password |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed |
Create an Application
...
| Column |
|---|
Authentication> Applications |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
Click on
Image Removed on the top right.
...
...
Please note: For initial set up the machine must be connected to the same network even if it is not joined to the domain.
In the new Application window, please enter the following information:
...
Select the Logon Procedure you had created in the previous step
Click: Save
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
Bind the Application to an SSO Server Agent
...
| Column |
|---|
Select the drop down menu corresponding to the Application you will be using and click on Agents. |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
...
| Column |
|---|
Tick the box of the SSO Server you will be using and click Save below. |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
Create a Service Provider Profile
...
| Column |
|---|
Go to SSO>Service Providers |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
Click on
Image Removed on the top right.
...
| Column |
|---|
Fill in the details as per screenshot on right and make sure you select SAML 2.0(Without Metadata) as Type. |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
...
...
Now fill out Entity ID and ACS URL.
...
...
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
...
| Column |
|---|
The completed Service Provider dialogue box will look like this: |
...
| Panel |
|---|
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
|
Image Removed
|
Click Save.
...
Download the IDP Metadata file.
...
| Column |
|---|
Go to SSO>SSO Servers |
...
...
| Column |
|---|
Select the drop down menu corresponding to the SSO server you will be using and click on Download IDP Metadata. |
...
...
| borderColor | #9EBEE5 |
|---|
| bgColor | #f0f0f0 |
|---|
| borderWidth | 1px |
|---|
...