Administrator Guide

Table Of Contents
13. Click Close.
The created relay trust is listed in the Relay Party Trust console.
14. Log in to the Wyse Management Suite public cloud server.
15. Go to Portal Administration > Active Directory and click Show WMS rules.
16. Copy the content displayed in the WMS Rules window.
17. Go to the ADFS console, right-click the relay trust, and select Edit Clam Issuance Policy.
18. Click Add Rule in the Issuance Transform Rules tab.
19. Click Ok.
The Select Rule Template window is displayed.
20. From the Claim rule template drop-down list, select the Send Claims using a Custom Rule option and click Next.
21. Click Add Rule.
22. Enter the Claim Rule name and paste the content that is copied in step 16 in the Custom rule field.
23. Click Finish.
24. Click Apply and then click Ok.
25. Go to Portal Administration > Active Directory and click Add Configuration.
26. To upload the .xml file stored on your thin client, click Load XML file.
The file is available at https://adfs.example.com/FederationMetadata/200706/
FederationMetadata.xml.
27. Click Update Configuration.
28. To enable tenants to configure Single Sign-On by using ADFS, select the Enable SSO login using ADFS check box. This
feature follows the Security Assertion and Markup Language (SAML) standard specification.
29. To validate the configuration information, click Test ADFS Login. This enables tenants to test their setup before saving.
30. Enter the ADFS credentials and click Sign in.
After ADFS is configured, Test Successful message is displayed.
31. Import the AD Domain users from the remote repository to the Wyse Management Suite public cloud.
32. Go to the Users page and assign roles to the imported AD Domain users.
33. Go to the Wyse Management Suite public cloud portal and click the Sign in with your domain credentials link.
34. Enter the email address of the imported AD Domain user and click Sign In.
You are redirected to Wyse Management Suite server after you log in to ADFS.
Configure secure LDAP or LDAPS setup
To request the Root certificate from the Active Directory Certificate Services and configure a secure LDAP or LDAPS setup, do
the following:
Steps
1. Go to the Active Directory domain server.
2. Go to Start > Run.
3. Enter mmc and click Ok.
The Console1 window is displayed.
4. Go to File > Add or Remove Snap-ins.
5. Add the certificates to the local system and click Ok.
6. Expand the Personal folder in the left pane.
7. Right-click certificates and go to All Tasks > Request New Certificate.
Certificate Enrollment window is displayed.
8. Click Next.
9. In the Select Certificate Enrollment Policy tab, click Next.
10. Select Domain Controller and click Enroll.
The domain certificate is installed on your domain controller.
11. Click Finish.
The certificate issued to your domain controller is displayed on your certificate page.
12. Right-click the certificate and export the certificate to your desktop.
126
Security configurations