e-ManualTopSite mapHelp

Chapter Top

Available Functions

Overview of Login Services

Default Authentication (Department ID Management)

SSO-H (Single Sign-On H)

System Requirements (SSO-H)

Launching and Closing SMS

Before Launching SMS (Preparation)

Setting Up HTTP Communication

Launching SMS (Log in)

Attention (Launching SMS (Log in))

Closing SMS (Logging Out)

MEAP Application Settings

Installing MEAP Applications

Attention (Installing MEAP Applications)

Uninstalling MEAP Applications

Starting/Stopping MEAP Applications

Starting MEAP Applications

Stopping MEAP Applications

Checking the Details of MEAP Applications

MEAP Application License Settings

Adding License Files

Disabling License Files

Downloading Disabled License Files

Deleting Disabled License Files

Setting Authentication Information for MEAP Applications

System Settings

Changing the MEAP Applet Display Order

Login Service Selection

Uninstalling a Login Service

Setting Enhanced System Applications

Starting/Stopping Enhanced System Applications

Starting Enhanced System Applications
Stopping Enhanced System Applications

Installing Enhanced System Applications

Uninstalling Enhanced System Applications

Checking Information

Checking System Information

Checking Application Information

Checking License Files

Changing the SMS Password

Deleting the MEAP Application Setting Information

Managing MEAP Application Log Data

Downloading Log Data

Deleting Log Data

Setting the SSO-H Function

Before Logging In to SSO-H

Logging In to SSO-H

Menu for Administrators

Setting the User Information for SSO-H

Registering/Editing User Data for Local Device Authentication
Registering/Editing User Data for Active Directory Authentication

Setting the SSO-H Configuration

Setting the User Authentication System
Setting the User Group to Register the Server Administrator
Setting the Access Mode in Sites

Setting the Security for SSO-H

Allowing Administrators to Operate Using the Default Password
Setting Password Restrictions
Setting the Lockout Function
Setting Web Service Authentication System

Menu for General Users

File Formats for Local Device Authentication User Information Files

SDL Format

NetSpot Accountant 3.x Format

NetSpot Accountant 4.x Format

Troubleshooting (SSO-H)

Trouble That May Occur When the Windows Server Firewall Is Set

Other Trouble

List of Error Messages (MEAP)

Errors Relating to the [Login] Page

Errors Relating to the [MEAP Application Management] Page

Errors Relating to the [Install MEAP Application] Page

Errors Relating to the [Authentication Information Settings] Page

Errors Relating to the [License Management] Page

Errors Relating to the [Enhanced System Application Management] Page

Errors Relating to the [Check License] and [Change Password] Pages

Errors Relating to the [MEAP Application Setting Information Management] Page

Errors Relating to the [MEAP Application Log Management] Page

Other Errors

Top » MEAP » Overview of Login Services » SSO-H (Single Sign-On H)
SSO-H (Single Sign-On H)
07E3-0U4
This is a login service which can be used in the domain on the Active Directory environment network or in the machine. You can register/edit user data and specify administrator/general user settings in the following location:
Server authentication is performed in the external authentication server.
Local device authentication is performed in the memory of the machine from a Web browser.
SSO-H contains the following functions:
Enables the functions of the machine and MEAP applications, etc., to be used after being authenticated once.
Contains a user authentication system that uses the external server, and has two compatible user authentication systems, which can be used even when there is network trouble and only the machine can be authenticated. These two user authentication systems can be used together or alone.
SSO-H includes the following three user authentication systems:
Server Authentication
Active Directory Authentication
Active Directory Authentication is a user authentication method that connects with the domain controller on the network in an active directory environment and logs in to the machine at the same time as it authenticates with the network domain. In addition to the users of the domain that includes the machine, users of up to 200 domains that have a direct two-way trust relationship with that domain can also be authenticated. The user selects the domain name of the login destination when logging in.
Local Device Authentication
A user authentication system which only uses the machine. Users to be authenticated are registered/managed using a database inside the machine. [This device] is the login destination.
'Server Authentication + Local Device Authentication'
A user authentication system which includes the functions of both Server Authentication and Local Device Authentication. This is useful for using Server Authentication to authenticate users registered/managed in the external server, and using Local Device Authentication to authenticate temporary users which cannot be added to the external server.
'Active Directory Authentication + Local Device Authentication'
Users belonging to Domain A (which includes the machine), and users belonging to Domain B (which is bi-directionally trusted by Domain A), can be authenticated, and users registered in the machine itself can be authenticated. The user selects the location to log in to (domain name or [This device]) when logging in.

IMPORTANT
You cannot use Server Authentication and Department ID Management at the same time.
NOTE
The three user authentication systems can be switched using a Web browser. (See "Setting the User Authentication System.")
The default setting is 'Server Authentication + Local Device Authentication.' To increase security, set the user authentication system to 'Server Authentication' or change the user name and password of the Local Device Authentication administrator immediately after you start using SSO-H.