User guide

iGuard/inSight User Guide
Release 7.0.0.4
161
4. On your Active Directory Server desktop, go to Start > Administrative Tools >
Active Directory Users and Computers.
This launches the Active Directory Users and Computers window.
5. Right-click on the domain name, reconnex.net, in the navigation bar.
6. Go to Properties > Group Policy > Default Domain Policy and select Edit.
7. Under User Configuration, click on Windows Settings > Scripts > Logon.
8. On the Scripts tab click Show Files.
9. Drag the rwl_client.exe and logon.bat from your desktop to the Group Policy Object
Editor window.
10. Right-click the logon.bat file and select Edit and Run.
11. Add the IP address of the iGuard in this file by adding it after rwl_client.exe.
Example:
REM Substitute the following 'hostname.example.org' argument
REM with the hostname or IP address of your Reconnex iGuard
rwl_client.exe iGuardHostname.reconnex.net
When this batch file gets executed, iGuard is notified that a user has logged in.
13. Save.
14. Close the window containing the rwl_client.exe and logon.bat files.
15. Click OK on the Scripts tab of the Logon Properties dialog box.
16. Close the Group Policy Object Editor window.
17. Click OK on the Group Policy tab of the reconnex.net Properties dialog box.
18. Close the Active Directory Users and Computers window.
Using an LDAP Server
Reconnex can utilize account information from any LDAP (Lightweight Directory Access Protocol)
server to add users and user groups to the inSight Console quickly and efficiently. User restrictions
and permissions are controlled through a standard LDAP authentication module.
To add users from an LDAP directory, you must first create an LDAP domain in the inSight Console
by adding the LDAP server.
Add an LDAP Server
An LDAP server can be used to add multiple users to the Reconnex systems in a batch mode type
of operation. This can only be done by an administrative user, because the server can only be
defined from a service account in which the password doesn't expire or change.
Warning: If the account used is not able to access the domain, all LDAP user authentication
on inSight will stop working.
1. Go to System > System Administration > Directory Services.
2. Select Actions > Create Directory Server.