Administrator Guide

Table Of Contents
Security configurations
This section describes the key security features of Wyse Management Suite and provides the procedures that are required to
ensure data protection and appropriate access control.
Topics:
Support for configuring TLS versions in Wyse Management Suite installer
Configure Active Directory Federation Services feature on public cloud
Configure secure LDAP or LDAPS setup
Deprecated protocol
Support for configuring TLS versions in Wyse
Management Suite installer
From Wyse Management Suite 3.0, the on-premise installer is improved to select the Transport Layer Security (TLS) version
during the installation or upgrade of the Wyse Management Suite. The recommended version of Transport Layer Security is 1.2.
Ensure that you select all the appropriate versions of TLS based on the device agent and the merlin image. Older versions of
Windows Embedded System, Wyse Device Agent (versions below WDA_14.4.0.135_Unified), and 32-bit merlin image versions
are only compatible with TLSv1.0. Also, the import tool is only compatible with TLSv1.0.
NOTE: You must select TLS 1.2 to configure Dell Hybrid Client 1.5.
Configure Active Directory Federation Services
feature on public cloud
Prerequisites
Notepad++ or any equivalent application must be installed on the server.
ADFS must be installed on the server.
Steps
1. On the Portal Admin page, under Console Settings, click Active Directory (AD).
2. Click Download WMS xml file in the Provide WMS details to ADFS section.
CCM_SP_Metadata.xml file is downloaded.
3. Right-click the downloaded file and select Edit with Notepad++.
4. Copy the ID value from the file. For example, ccm-sq3.
5. Go to the ADFS setup console.
6. Right-click Relay Party Trusts and select Add Relaying Party Trust.
Add Relaying Party Trust window is displayed.
7. Click Start.
Select Data Source window is displayed.
8. Select the Import data about the relaying party from the file option and browse the downloaded
CCM_SP_Metadata.xml file.
9. Click Next.
10. Enter the ID value (ccm-sq3) in the Display name field and click Next.
11. On the Choose Access Control Policy page, click Next.
12. On the Ready to Add Trust page, click Next.
16
Security configurations 125