Password Safe and Repository

Login with active directory users

Login with active directory users

Previous topic Next topic  

Login with active directory users

Previous topic Next topic  

In an Enterprise server installation you have got the possibility to take over users from the Active Directory to Password Safe. The advantage of that is that the user does not have to remember a further login name or keyword, because the Windows login data is used. If requested an automated login can be made possible for the Active Directory users. Please take advices on the necessary settings on the server page from the server help. The user and group structures can be imported via the Active Directory integration, available in the user and group management.

 

The authentication of the users is carried out server-side. As long as the server is in the accordant domain and can be accessed from the clients the users can log on, and it does not matter if the client is in the domain or not.

 

Notice:

In order to log on at an offline database, either the client has to be in the accordant domain or the user profile has to be on the computer.

 

In the online mode the authentication of the users towards the Active directory is realized through the Enterprise server. Therefore the Active Directory has to be accessible from the Enterprise server.

 

 

At the users taken from the Active Directory, the tab Active Directory can be found in the properties (when editing the user).

 

AD_User_Settings

 

If the function automatic login is activated, the user can log in automated, that means without password entry. Please notice that this function also has to be activated and configured at the server. The function user name has to conform to Windows login name effects that only the user that is logged on at the operating system is allowed to log on at Password Safe. Generally the automatic login is only possible for the logged in domain user.

 

 

Manual login with an Active Directory user

 

For the login with an Active Directory user please enter the user name including the domain. Please notice that you have to use the Windows user password here.

 

AD_User_login

 

By means of the button behind the user name you can let your currently logged in user name including the domain be entered automatically.

 

 

Automatic login by means of the Windows authentication

 

Precondition for the automatic Windows authentication is that this function is activated in the user properties and also configured at the server. There are two variations here. On the one hand the RSA encryption and on the other hand the SID encryption. The login is carried out similarly in both cases. Please notice that the computer and the user have to be in the same domain for the automatic login.

 

 

Automatic Windows authentication with RSA encryption

 

If the automatic Windows authentication with RSA encryption has been configured at the server, you can log in as follows:

 

First login

At the first login you enter your Windows user name including the domain. Via the push-button next to the user name you can also take over the user name directly. Also the user name can be taken over via a hot key (by default CTRL + ALT + W). Afterwards click into the field password and enter your Windows login password there. Push the button login in order to log on at Password Safe.        

 

AD_User_login_hint

 

Second login

At the second login a push-button appears in the login mask below to activate the automatic login. Set a check mark here and log in like you did at the first login.

 

AD_User_login_check

 

Third login

The third login is now carried out automatically. In the left corner below the encryption is shown to you via a symbol, here the RSA encryption.

 

AD_User_login_RSA

 

 

Automatic Windows authentication with SID encryption

 

If the automatic Windows authentication with SID encryption has been configured by the administrator at the server you can log in as follows:

 

First login

At the SID encryption the push-button log in automatically in the login mask already appears at the first login. Activate the option for the automatic login in the lower array and log in with your Windows login data.

 

AD_User_login_check

 

 

Second login

The second login is already carried out automatically. In the left corner below the SID encryption will be shown to you with a symbol.

 

AD_User_login_SID

 

Notice:

Especially in the test run it can happen that a user wants to log on at Password Safe that does not comply with the user logged in at the operating system. In this case consider the option user name must match with Windows logon name. You can find further information on this in the chapter manage users and groups.

 

Tip:

If you have activated an automatic login but want to log in with another user, keep the Shift key (upper case) pushed. Therefore the automatic login is deactivated and you can carry out a manual login.