SSO transparent
Hello !
I really need help with SSO agent and transparent authentication.
We have following atp 500 full license.
Active directory server 2012 r2 full updates.
Windows 10 workstations.
SSO agent installed on Server 2012 r2.
User/ Group + ad set up on ATP 500.
What ports required from LAN to Zywall
Which ports from Workstations to AD. ( incoming / outbound)
In your Wiki ports part is not covered.
Last time I tried configuring this - users showed up in monitor on USG 310.
But they got disconnected from internet after about 10-30 minutes. The problem is unkown.
Thanks
All Replies
-
All tests on ATP500
and on AD says Success.
0 -
0
-
Yes I followed exactly same guide.
All tests get pass both on ATP and AD.
But I dont see all users that are currently logged in . in sso agent located on AD.
0 -
0
-
Yes , Also users on ATP500 internet works for like 10-15 -30 mins then they need to log out from windows log in again .
0 -
Hi @sk8erbender,
Here are the steps for SSO troubleshooting.
1. Are AD server and SSO agent installed on the same server (Server 2012 r2)?
2. Make sure these user logged in directly from LAN, not via RDP.
- SSO does not support RDP client and multiple domains. Check client user login type on client PC, it should be console.
3. Check the local firewall on SSO Agent PC. Both ICMP and WMI should be allowed.
4. Check whether GPO that opens firewall has been applied, or not. Use cmd “gpresult /R” on client PC to make sure the group policy applied.
- If not, check GPO rule and execute “gpupdate /force”, and reboot the client PC and login to the domain to apply the group policy.
5. Use the attached tool to check if SSO agent can query these clients.
- Start > All Programs > Accessories > Windows PowerShell folder > Windows PowerShell
https://us.v-cdn.net/6029482/uploads/397/OG2H5GT9WQYU.zip0 -
thanks, gonna use your tool and will tell you how it goes
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 237 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight