Advanced Authentication 6.3 Administration Guide
Total Page:16
File Type:pdf, Size:1020Kb
Advanced Authentication 6.3 Administration Guide December 2019 Legal Notice For information about legal notices, trademarks, disclaimers, warranties, export and other use restrictions, U.S. Government rights, patent policy, and FIPS compliance, see http://www.microfocus.com/about/legal/. © Copyright 2021 Micro Focus or one of its affiliates. 2 Contents About this Book 15 1 Introduction to Advanced Authentication 17 1.1 How Is Advanced Authentication Better Than Other Solutions. .17 1.2 Key Features. .17 1.3 Advanced Authentication Server Components . .18 1.3.1 Administration Portal . .19 1.3.2 Self-Service Portal. .19 1.3.3 Helpdesk Portal. .20 1.3.4 Reporting Portal . .20 1.4 Architecture . .20 1.4.1 Basic Architecture. .20 1.4.2 Enterprise Level Architecture . .21 1.4.3 Enterprise Architecture With A Load Balancer. .23 1.5 Terminologies. .24 1.5.1 Authentication Method . .24 1.5.2 Authentication Chain . .24 1.5.3 Authentication Event . .24 1.5.4 Endpoint . .24 Part I Configuring Advanced Authentication 25 2 Logging In to the Advanced Authentication Administration Portal27 3 End to End Configuration with Examples 29 3.1 Implementing Multi-Factor Authentication to VPN . .29 3.1.1 Prerequisites . .30 3.1.2 Considerations Before Configuration . 30 3.1.3 Add a Repository. .31 3.1.4 Configure Methods. .32 3.1.5 Create a Chain. .32 3.1.6 Configure Public External URLs Policy. .32 3.1.7 Assign Chain to RADIUS Server Event . 33 3.1.8 Configure the OpenVPN Server . .33 3.1.9 End User Tasks . .34 3.2 Securing Windows Workstation with Multi-Factor Authentication. .35 3.2.1 Prerequisites . .36 3.2.2 Points to Consider Before Configuration . .36 3.2.3 Configure Methods. .37 3.2.4 Create a Chain. .38 3.2.5 Configure SMS Sender Policy. .39 3.2.6 Assign Chain to Windows Logon Event . .39 3.2.7 End User Tasks . .40 3.3 Configuring TOTP from Desktop OTP Tool as One of the Factors to Access a Corporate Portal . .41 3.3.1 Prerequisites . .41 Contents 3 3.3.2 Configure Methods. .42 3.3.3 Create a Chain. .42 3.3.4 Configure Google Workspace . .43 3.3.5 Create a SAML2 Event . .45 3.3.6 Configure Web Authentication Policy . .45 3.3.7 Obtaining the Signing Certificate of Advanced Authentication . .45 3.3.8 Generate and Send an Enrollment Link to Users . .46 3.3.9 End User Tasks . .46 Part II Configuring the Advanced Authentication Settings 49 4 Managing Dashboard 51 4.1 Adding Widgets . .52 4.1.1 Pie Chart . .52 4.1.2 Stacked Chart . .52 4.1.3 Activity Stream . .52 4.1.4 Enroll Activity Stream. .52 4.1.5 Users . .53 4.1.6 Authenticators . .53 4.1.7 Licenses . .53 4.1.8 Event Count Line Chart. .53 4.1.9 Events Count Line Chart Grouped by Field . .53 4.1.10 Distinct Events Count Line Chart . .53 4.1.11 Distinct Events Count Line Chart Grouped by Field . .54 4.2 Customizing Dashboard. .54 4.3 Updating Dashboard to View Real Time or Historical Data . .54 4.4 Customizing the Default Widgets . .55 4.4.1 Server Metrics. .56 4.4.2 Tenants . .56 4.4.3 Billing . ..