FORTINET SINGLE SIGN ON (FSSO) 4.3.0143

FORTINET SINGLE SIGN ON
(FSSO) 4.3.0143
I N S T R U C T I O N S F O R I N S T A L L I N G
T H E C O L L E C T O R A G E N T
A N D
C O N F I G U R I N G
On the domain controller that is serving as the collector:
1.
2.
3.
4.
Download the appropriate version from the West UC Support Page
a) FSSO for 32-bit systems
b) FSSO_x64 for 64-bit systems
Double click the install file, FSSO_Setup_4.3.0143.exe to start the upgrade.
a) If you are running a 64 bit version of the Windows Server operating system,
please double click on FSSO_Setup_4.3.0143_x64.exe.
If enabled, UAC will prompt for permission to run the setup file. Click Yes
as shown below.
TYPICAL IMPLEMENTATION
A typical implementation of
FSAE/FSSO consist of multiple
Microsoft Windows Domain
Controllers. One of the domain
controllers serves as the collector
and all other domain controllers
will have the DC agent installed.
Follow through the installation
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
1
5.
Choose where the FSSO Collector Agent will be installed and click Next.
6.
Enter domain administrator credentials and click Next.
7.
Choose your Install Options. The default choices are good for most setups. Click Next.
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
2
8.
Click Install.
9.
The upgrade will continue with no user input. Upon completion, click Finish.
10. The next step in the process is to install the DC agent on the other domain controllers in your environment. If the check on
step 9 was not checked, you can open it through the following steps:
a) From the start menu select the Fortinet folder
b) Click on the Fortinet Single Sign On Agent folder
c) Click Install DC Agent
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
3
11. Enter your Domain Controller’s IP address and listening port and click Next.
12. Select the domain that you wish to monitor and then click Next
13. Mark the users you do not want to monitor (if any) and click Next.
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
4
14. Select domain controllers for monitoring user logon events and click Next.
15. Once you receive verification that the DC Agents are installed, click on Finish
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
5
16. The final step in the process is to Configure the DC agent. Open the FSSO Configuration through the following steps:
a) From the start menu select the Fortinet folder
b) Click on the Fortinet Single Sign On Agent folder
c) Click Configure Fortinet Single Sign On Agent
17. Enter a Password and click Apply. Then click Set Group Filters.
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
6
18. From here you will choose which AD groups to pass to MaxxSecure. Click Add
19. Enter the FortiGate Serial Number and a description. Click Advanced
20. Choose the groups to be added and passed to MaxxSecure then click Add.
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
7
21. Click OK on the FortiGate Group Filter. Click OK on the FortiGate Filter List. Click
Apply then Save&close on the Fortinet Single Sign On Configuration.
22. You have now completed installation of the FSSO on your Domain Controller.
You will need to provide the DC IP and password setup in MaxxSecure.
WestUC.com | Sales: 877.489.7647 | Support: 800.374.2441
8