Deployment Guide

l To view details for an SSO setting, click its Show Details link. The form expands to show the SSO setting's name
and description; account description; and Kerberos principal name, realm name, and URL prefix matches.
l To edit any of an SSO setting's attributes, click its Edit link. The Single Sign-On Setting form opens.
l To create a copy of an SSO setting to use as a basis for a new SSO setting, click its Duplicate link. The Single
Sign-On Setting form opens with all attributes prepopulated and "Copy" appended to the SSO setting's name. You
can rename the new SSO setting, and edit any of its attributes.
l To delete an SSO setting, click its Delete link. You will be asked to confirm the deletion.
l To see if the SSO setting is currently used, click its Show Usage link. The form expands to show a list of
configuration profiles that use the Web clips setting.
l To create new SSO settings, click the Create new SSO settings link in the upper right corner. The Single Sign-On
Setting form opens.
For information on creating, editing, or duplicating SSO settings, see "Creating and Editing Single Sign-On Settings"
on page 177.
Creating and Editing Single Sign-On Settings
An SSO setting includes its name and description, the account's display name, and the Kerberos account principal
name, realm name, and URL prefix matches.
To configure an SSO setting:
1. Go to Onboard + WorkSpace > Onboard/MDM Configuration > Single Sign-On, then click the Create new SSO
settings link in the upper-right corner. The Single Sign-On Setting form opens.
2. In the Name field, give the SSO setting a short name that identifies it clearly. SSO setting names can include
spaces.
3. If you are duplicating an SSO setting, the original name has "Copy" appended to it. You may highlight this name
and replace it with a new name.
4. In the Description field, briefly describe the characteristics of the SSO setting.
5. In the Account Description field, enter the account display name.
6. In the Kerberos SSO area, enter the Kerberos principal name in the Principal Name field. This is a unique ID, and
includes three parts:the primary, the instance, and the realm. These follow the format primary/instance@REALM,
where:
l Primary = First part of the principal name. For a user, it is the username. For a host, the it is the word "host".
Dell Networking W-ClearPass Guest 6.3 | User Guide Onboard + WorkSpace | 177