McAfee EPOCDE-AA-BA Product Guide - Page 53

Configuring advanced server settings, Configuring Active Directory user login

Page 53 highlights

7 Configuring advanced server settings Advanced server settings enable and control the behavior of your server's advanced features. These features allow, and often require, configuration and tuning of multiple server settings to operate correctly in your managed environment. Contents Configuring Active Directory user login Authenticating with certificates Configuring Rogue System Detection server settings Managing security keys Configuring source and fallback sites Configuring Active Directory user login When you have many users accessing your ePolicy Orchestrator server, managing user accounts manually can be overwhelming. You can reduce the overhead of managing user accounts and access by configuring Active Directory user login. Contents Managing ePolicy Orchestrator users with Active Directory Configuring Windows authentication and authorization Managing ePolicy Orchestrator users with Active Directory ePolicy Orchestrator offers the ability to dynamically create McAfee ePO users and assign permission sets to them by automatically creating users based on Windows authenticated user credentials. This process is accomplished by mapping McAfee ePO permission sets to Active Directory groups in your environment. This feature can reduce the management overhead when you have a large number of McAfee ePO users in your organization. To complete the configuration, you must work though the following process: 1 Configure user authentication. 2 Register LDAP servers. 3 Assign permission sets to the Active Directory group. User authentication ePolicy Orchestrator users can be authenticated with McAfee ePO password authentication or Windows authentication. If you use Windows authentication, you can specify whether users authenticate: McAfee® ePolicy Orchestrator® 4.6.0 Software Product Guide 53

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328

7
Configuring advanced server settings
Advanced server settings enable and control the behavior of your server's advanced features. These
features allow, and often require, configuration and tuning of multiple server settings to operate
correctly in your managed environment.
Contents
Configuring Active Directory user login
Authenticating with certificates
Configuring Rogue System Detection server settings
Managing security keys
Configuring source and fallback sites
Configuring Active Directory user login
When you have many users accessing your ePolicy Orchestrator server, managing user accounts
manually can be overwhelming. You can reduce the overhead of managing user accounts and access
by configuring Active Directory user login.
Contents
Managing ePolicy Orchestrator users with Active Directory
Configuring Windows authentication and authorization
Managing ePolicy Orchestrator users with Active Directory
ePolicy Orchestrator offers the ability to dynamically create McAfee ePO users and assign permission
sets to them by automatically creating users based on Windows authenticated user credentials.
This process is accomplished by mapping McAfee ePO permission sets to Active Directory groups in
your environment. This feature can reduce the management overhead when you have a large number
of McAfee ePO users in your organization. To complete the configuration, you must work though the
following process:
1
Configure user authentication.
2
Register LDAP servers.
3
Assign permission sets to the Active Directory group.
User authentication
ePolicy Orchestrator users can be authenticated with McAfee ePO password authentication or Windows
authentication. If you use Windows authentication, you can specify whether users authenticate:
7
McAfee
®
ePolicy Orchestrator
®
4.6.0 Software Product Guide
53