SafeNet Authentication Service Agent For Microsoft Outlook .

3y ago
45 Views
2 Downloads
2.06 MB
57 Pages
Last View : 1m ago
Last Download : 3m ago
Upload by : Kaden Thurman
Transcription

SafeNet Authentication ServiceAgent for Microsoft Outlook WebAppInstallation and Configuration Guide

All information herein is either public information or is the property of and owned solely by Gemalto NV. and/orits subsidiaries who shall have and keep the sole right to file patent applications or any other kind of intellectualproperty protection in connection with such information.Nothing herein shall be construed as implying or granting to you any rights, by license, grant or otherwise, underany intellectual and/or industrial property rights of or concerning any of Gemalto’s information.This document can be used for informational, non-commercial, internal and personal use only provided that: The copyright notice below, the confidentiality and proprietary legend and this full warning notice appearin all copies. This document shall not be posted on any network computer or broadcast in any media and nomodification of any part of this document shall be made.Use for any other purpose is expressly prohibited and may result in severe civil and criminal liabilities.The information contained in this document is provided “AS IS” without any warranty of any kind. Unlessotherwise expressly agreed in writing, Gemalto makes no warranty as to the value or accuracy of informationcontained herein.The document could include technical inaccuracies or typographical errors. Changes are periodically added tothe information herein. Furthermore, Gemalto reserves the right to make any change or improvement in thespecifications data, information, and the like described herein, at any time.Gemalto hereby disclaims all warranties and conditions with regard to the information contained herein,including all implied warranties of merchantability, fitness for a particular purpose, title, and non-infringement. Inno event shall Gemalto be liable, whether in contract, tort or otherwise, for any indirect, special or consequentialdamages or any damages whatsoever including but not limited to damages resulting from loss of use, data,profits, revenues, or customers, arising out of or in connection with the use or performance of informationcontained in this document.Gemalto does not and shall not warrant that this product will be resistant to all possible attacks and shall notincur, and disclaims, any liability in this respect. Even if each product is compliant with current securitystandards in force on the date of their design, security mechanisms' resistance necessarily evolves according tothe state of the art in security and notably under the emergence of new attacks. Under no circumstances, shallGemalto be held liable for any third party actions and in particular in the case of any successful attack againstsystems or equipment incorporating Gemalto products. Gemalto disclaims any liability with respect to securityfor direct, indirect, incidental or consequential damages that result from any use of its products. It is furtherstressed that independent testing and verification by the person using the product is particularly encouraged,especially in any application in which defective, incorrect or insecure functioning could result in damage topersons or property, denial of service or loss of privacy. 2017 Gemalto. All rights reserved. Gemalto and the Gemalto logo are trademarks and service marks ofGemalto N.V. and/or its subsidiaries and are registered in certain countries. All other trademarks and servicemarks, whether registered or not in specific countries, are the property of their respective owners.Document Part Number: 007-013748-001Version: 1.1Release Date: March 2017SafeNet Authentication Service Agent for Microsoft Outlook Web App: Installation and Configuration GuideDocument PN: 007-013748-001, Rev. A, Gemalto 2017. All rights reserved.Gemalto and the Gemalto logo are trademarks and service marks of Gemalto and are registered in certain countries.2

Table of ContentsTable of ContentsPreface . 5Customer Release Notes . 5Audience. 5Third-Party Software Acknowledgement . 5Support Contacts . 61 Introduction . 7Overview. 7Applicability. 7Environment . 82 SafeNet Authentication Service Agent for Outlook Web App 2010 . 9Authentication Modes . 9Setting Authentication Mode . 9Standard Authentication Mode - Hardware/Software . 10Standard Authentication Mode - GrIDsure/SMS Challenge . 11Split Authentication Mode . 12Prerequisites. 14Installing SAS Agent for OWA 2010 . 14Upgrading SAS Agent for OWA 2010 . 16Installing SAS Agent for OWA 2010 Using Previous Configurations . 16SafeNet Microsoft Exchange OWA Manager . 19Policy Tab . 19Authentication Methods Tab . 20Exceptions Tab . 21Communications Tab . 24Logging Tab . 25Localization Tab . 263 SafeNet Authentication Service Agent for Outlook Web App 2013 . 27Authentication Modes . 27Setting Authentication Mode . 27Standard Authentication Mode - Hardware/Software . 28Split Authentication Mode . 28Prerequisites. 30Installing SAS Agent for OWA 2013 . 31Upgrading SAS Agent for OWA 2013 . 32Installing SAS Agent for OWA 2013 Using Previous Configurations . 33SafeNet Microsoft Exchange OWA Manager . 35Policy Tab . 35Authentication Methods Tab . 36Exceptions Tab . 37Communications Tab . 39Logging Tab . 40Localization Tab . 41SafeNet Authentication Service Agent for Microsoft Outlook Web App: Installation and Configuration GuideDocument PN: 007-013748-001, Rev. A, Gemalto 2017. All rights reserved.Gemalto and the Gemalto logo are trademarks and service marks of Gemalto and are registered in certain countries.3

Table of Contents4 SafeNet Authentication Service Agent for Outlook Web App 2016 . 42Authentication Modes . 42Setting Authentication Mode . 42Standard Authentication Mode - Hardware/Software . 43Split Authentication Mode . 43Prerequisites. 45Installing SAS Agent for OWA 2016 . 46Installing SAS Agent for OWA 2016 Using Previous Configurations . 47SafeNet Microsoft Exchange OWA Manager . 50Policy Tab . 50Authentication Methods Tab . 51Exceptions Tab . 52Communications Tab . 54Logging Tab . 56Localization Tab . 57SafeNet Authentication Service Agent for Microsoft Outlook Web App: Installation and Configuration GuideDocument PN: 007-013748-001, Rev. A, Gemalto 2017. All rights reserved.Gemalto and the Gemalto logo are trademarks and service marks of Gemalto and are registered in certain countries.4

PrefacePrefaceThis document describes how to install and configure the Gemalto SafeNet Authentication Service (SAS) Agentfor Microsoft Outlook Web App (OWA).Customer Release NotesThe Customer Release Notes (CRN) document provides important information about this release that is notincluded in other customer documentation. It is strongly recommended that you read the CRN to fullyunderstand the capabilities, limitations, and known issues for this release.AudienceThis document is targeted at system administrators who are familiar with OWA, and are interested in addingMulti-Factor Authentication (MFA) capabilities using the SAS solution.All products manufactured and distributed by Gemalto are designed to be installed, operated, and maintained bypersonnel who have the knowledge, training, and qualifications required to safely perform the tasks assigned tothem. The information, processes, and procedures contained in this document are intended for use by trainedand qualified personnel only.Third-Party Software AcknowledgementThis document is intended to help users of SafeNet products when working with third-party software, such asMicrosoft OWA. Material from third-party software is being used solely for the purpose of making instructionsclear. Screen images and content obtained from third-party software will be acknowledged.SafeNet Authentication Service Agent for Microsoft Outlook Web App: Installation and Configuration GuideDocument PN: 007-013748-001, Rev. A, Gemalto 2017. All rights reserved.Gemalto and the Gemalto logo are trademarks and service marks of Gemalto and are registered in certain countries.5

PrefaceSupport ContactsIf you encounter a problem while installing, registering, or operating this product, please make sure that youhave read the documentation. If you cannot resolve the issue, contact your supplier or Gemalto CustomerSupport. Gemalto Customer Support operates 24 hours a day, 7 days a week. Your level of access to thisservice is governed by the support plan arrangements made between Gemalto and your organization. Pleaseconsult the support plan for further information about your entitlements, including the hours when telephonesupport is available to you.Contact MethodContact InformationAddressGemalto4690 Millennium DriveBelcamp, Maryland 21017 USAPhoneTechnical SupportCustomer PortalDocumentationUnited ps://serviceportal.safenet-inc.comExisting customers with a Technical Support Customer Portal account can login tomanage incidents, get latest software upgrades, and access the Gemalto KnowledgeBase.All SAS Agents documentation can be found at the SafeNet Authentication ServiceDownloads page.All SAS documentation (Cloud, PCE, SPE, Token and Integration) can be found at theSafeNet Knowledge Base page.SafeNet Authentication Service Agent for Microsoft Outlook Web App: Installation and Configuration GuideDocument PN: 007-013748-001, Rev. A, Gemalto 2017. All rights reserved.Gemalto and the Gemalto logo are trademarks and service marks of Gemalto and are registered in certain countries.6

Introduction1IntroductionOverviewAuthentication is the process of proving that a user is who he or she claims to be. An Access System enablesthe user to configure authentication rules in the policy domains that protect the resources. Authentication rulescontain authentication schemes, which provide the methods for performing verification of a user's identity.The Outlook Web App (OWA) is Microsoft Exchange Server’s web-based email client, allowing users to accessemail messages, contacts, and calendar using web browsers, without setting up a full email client.The Gemalto SafeNet Authentication Service (SAS) delivers fully automated, highly secure authentication-as-aservice, with flexible token options tailored to the unique needs of different organizations, substantially reducingthe total cost of operation. Strong authentication is easily achievable through the flexibility and scalability ofSAS’s automated workflows, vendor-agnostic token integrations, and broad APIs. In addition, managementcapabilities and processes are fully automated and customizable—providing a seamless and enhanced userexperience. The SAS solution also enables a quick migration to a multi-tier, multi-tenant cloud environment,protecting everything, from cloud-based and on-premises applications to networks, users, and devices.The SAS Agent for OWA is designed to help Microsoft enterprise customers ensure that web-based resourcesare accessible only by authorized users, whether working remotely or inside the firewall. It delivers a simplifiedand consistent user login experience and helps organizations comply with regulatory requirements. The use ofTwo-Factor Authentication (2FA) instead of just traditional static passwords to access OWA is a critical step forinformation security.This document describes how to: Deploy 2FA in OWA, managed by the SAS solution. Deploy and configure OWA using the SAS agent.ApplicabilityThe information in this document applies to: SafeNet Authentication Service - Cloud (SAS Cloud) — The SafeNet’s cloud-based authenticationservice. SafeNet Authentication Service - Service Provider Edition (SAS SPE) — The on-premises, serverversion targeted at service providers interested in hosting SAS in their data center(s). SafeNet Authentication Service - Private Cloud Edition (SAS PCE) — The on-premises, serverversion targeted at organizations interested in hosting SAS in their private cloud environment.SafeNet Authentication Service Agent for Microsoft Outlook Web App: Installation and Configuration GuideDocument PN: 007-013748-001, Rev. A, Gemalto 2017. All rights reserved.Gemalto and the Gemalto logo are trademarks and service marks of Gemalto and are registered in certain countries.7

IntroductionEnvironmentNetwork TCP 443Supported Architecture 64-bitSupported Web Servers IIS 7.0 IIS 7.5 IIS 8.0 Microsoft Exchange Server 2010 Microsoft Exchange Server 2013 Microsoft Exchange Server 2016Additional Software .NET 3.5Supported Web Browsers Internet Explorer (IE) 10 and 11Supported Exchange ServerVersionsNote: For SAS OWA 2016 Agent, the supported web browser is InternetExplorer (IE) 11 (and onwards).Additional Web BrowsersRequirementsSupported AuthenticationMethodsSAS releases Firefox Chrome Cookies must be enabled JavaScript must be enabled ActiveX must be enabledAll tokens and authentication methods supported by SAS. SafeNet Authentication Service PCE/SPE 3.5.4 (and earlier) SafeNet Authentication Service Cloud EditionSafeNet Authentication Service Agent for Microsoft Outlook Web App: Installation and Configuration GuideDocument PN: 007-013748-001, Rev. A, Gemalto 2017. All rights reserved.Gemalto and the Gemalto logo are trademarks and service marks of Gemalto and are r

Microsoft Exchange Server 2010 Microsoft Exchange Server 2013 Microsoft Exchange Server 2016 . Additional Software .NET 3.5 . Supported Web Browsers Internet Explorer (IE) 10 and 11 Note: For SAS OWA 2016 Agent, the supported web browser is Internet

Related Documents:

using eToken PKI Client or SafeNet Borderless Security Client (BSec) can continue to use deployed eToken and iKey devices. Supported Tokens SafeNet Authentication Client 8.1 SP1 supports the following tokens: SafeNet eToken 5100/5105 SafeNet eToken 5200/5205 SafeNet eToken 4100 SafeNet eToken PRO

SafeNet Authentication Client enables Token operations and the implementation of Token based PKI solutions. Note: This document refers to SafeNet Authentication Client 8.0. For details of supported platforms in SafeNet Authentication

2. Start SafeNet Authentication Client (there are two ways of doing it): a. Right-click on the icon SafeNet Authentication Client at bottom right of the screen, next to the system clock, and choose the option Change Token Password (Figure 4) or b. Start SafeNet Authentication Client Tools (Start - All applications - SafeNet -

Details about the Quantum Scalar i6000/SafeNet k460 KMIP-compliant implementation include: A minimum of two SafeNet KeySecure servers are requ ired for failover purposes. A total of 10 SafeNet encryption servers are allowed, for increased failover capability. Data encryption k

1. Introduction / Overview SafeNet Authentication Client (Mac) User's Guide, Rev. Revision B, 2012 SafeNet, Inc. 9 Overview Public Key Infrastructure (PKI) is a framework for creating a secure method for exchanging

Bruksanvisning för bilstereo . Bruksanvisning for bilstereo . Instrukcja obsługi samochodowego odtwarzacza stereo . Operating Instructions for Car Stereo . 610-104 . SV . Bruksanvisning i original

**SafeNet eToken software installation steps for use with the PKI Client available here: Download and install the SafeNet Authentication Client (SAC) – 32/64-bit SafeNet Client After completing t

RSA Authentication Agent for Microsoft Windows RSA Authentication Agent for Mi crosoft Windows works with RSA Authentication Manager to allow users to perform two-factor authentication when accessing Windows computers. Two-factor authentication requires something you know (for example, an RSA SecurID PIN) and something you have (for