- 03 Jan 2025
- 2 Minutes à lire
- SombreLumière
- PDF
Typical Digipass Authentication Module setup
- Mis à jour le 03 Jan 2025
- 2 Minutes à lire
- SombreLumière
- PDF
OneSpan Authentication Server supports the following DAM products:
- Citrix Storefront. Used for Digipass Authentication for Citrix StoreFront.
- IIS Module. Used for Digipass Authentication for IIS Basic.
- Microsoft ADFS. Used for Digipass Authentication for Microsoft ADFS.
- Outlook Web Access. Used for Digipass Authentication for OWA Basic and Digipass Authentication for OWA Forms.
- Windows Remote Desktop Web. Used for Digipass Authentication for Remote Desktop Web Access.
Before installing the DAM with OneSpan Authentication Server Appliance, you need to prepare the following:
- An instance of OneSpan Authentication Server Appliance, which has already been installed. For more information, refer to the OneSpan Authentication Server Appliance Installation and Maintenance Guide.
- The module software on the Citrix, OWA, IIS, or SBR server, which is available in the OneSpan Authentication Server Appliance delivery package.
Installing a DAM with OneSpan Authentication Server Appliance includes the following steps:
- Acquire a module license.
- Create a client component in the OneSpan Authentication Server Administration Web Interface.
- Install the DAM module on the Citrix , OWA, IIS, or SBR Server.
The OneSpan Authentication Server Appliance Authentication service must be enabled before a Digipass Authentication Module setup is configured. For more information about enabling the Authentication service, see Manual settings in the Configuration Tool.
Setting up a Digipass Authentication Module
Creating a client component
An Administration Program client component must be created in OneSpan Authentication Server to allow a module client to create a client component in OneSpan Authentication Server Appliance.
To create a client component record (Digipass Authentication Module)
- Log on to the OneSpan Authentication Server Administration Web Interface (see Accessing OneSpan Authentication Server Appliance Configuration Tool and OneSpan Authentication Server Administration Web Interface).
- Select CLIENTS > Register.
Enter the required settings for the new client component:
- Client Type: Administration Program
- Location: The IP address of the server where the DAM component is installed.
- Policy ID: The policy you want to use for this client component, e.g. Identikey Administration Logon.
- Protocol ID: SOAP
- Shared Secret: The shared secret used by the client component.
- Click CREATE.
This is a temporary administration program client component that can be deleted after the Digipass Authentication Module client has created a client component in the OneSpan Authentication Server Administration Web Interface.
Installing a Digipass Authentication Module
Install the required Digipass Authentication Module package. For detailed installation instructions, refer to the product documentation of the respective Digipass Authentication Module. The module software packages and documentation are provided in the OneSpan Authentication Server Appliance delivery package.
In the Installation Wizard, enter the values in the relevant fields (see Table: Field values for DAM installation), and upload the client license key for the relevant module.
During installation a valid client component is created for module authentication, with a valid policy. Remove the temporarily created client component via the OneSpan Authentication Server Administration Web Interface.
To delete the temporary client component record
- Log on to the OneSpan Authentication Server Administration Web Interface (see Accessing OneSpan Authentication Server Appliance Configuration Tool and OneSpan Authentication Server Administration Web Interface).
- Select CLIENTS > List.
- Select the checkbox for the client component of the type Administration Program that is using the SEAL protocol.
- Click DELETE.
Configuring policies and settings
During installation a new client component is created, for which the policy can be modified.
For more information about the possible policy settings, refer to the OneSpan Authentication Server Appliance Product Guide, Section "Policies".
Back-end authentication is always required, because of the nature of module setup. For more information, refer to the OneSpan Authentication Server Appliance Product Guide.