Administrator Guide

Table Of Contents
After you assign the roles to the active directory user, they are moved to the Administrators tab on the Users page.
NOTE: To close the AD Authentication and One-time Import page during the configuration, click AD LogOut option.
NOTE: To log in as a domain user after you import groups, the administrator must import group users using the
Unassigned Users tab under Users tab. You cannot sign in with domain users without importing group users if the
administrator imports only groups and assign role to groups only.
Next steps
Active directory users can log in to the Wyse Management Suite Management portal by using the domain credentials. To log in
to the Wyse Management Suite portal, do the following:
1. Start the Wyse Management Suite management portal.
2. On the login screen, click the Sign in with your domain credentials link.
3. Enter the domain user credentials, and click Sign In.
To log in to the Wyse Management Suite portal using child domain credentials, do the following:
1. Start the Wyse Management Suite management portal.
2. On the login screen, click the Sign in with your domain credentials link.
3. Click Change user domain.
4. Enter the user credentials and the complete domain name.
5. Click Sign In.
The imported Active Directory users can be activated or deactivated on the Users page by using the global administrator login.
If your account is deactivated, you cannot log in to the Wyse Management Suite Management portal.
NOTE: To configure and enable secure LDAP over SSL, see Enable secure LDAP over SSL.
Configuring Active Directory Federation Services feature on public
cloud
You can configure Active Directory Federation Services (ADFS) on a public cloud.
Steps
1. On the Portal Admin page, under Console Settings, click Active Directory (AD).
2. Enter the Wyse Management Suite details to ADFS. To know the location details on the ADFS server where you must upload
the Wyse Management Suite .xml files, hover over the information (i) icon.
NOTE: To download the Wyse Management Suite .xml file, click the download link.
3. Set the Wyse Management Suite rules in ADFS. To know the custom claim rule details, hover over the information (i) icon.
NOTE:
To view the Wyse Management rules, click the Show WMS Rules link. You can also download the Wyse
Management Suite rules by clicking the link that is provided in the Wyse Management Suite Rules window.
4. To configure the ADFS details, click Add Configuration, and do the following:
NOTE: To allow tenants to follow the ADFS configuration, upload the ADFS metadata file.
a. To upload the .XML file stored on your thin client, click Load XML file.
The file is available at https://adfs.example.com/FederationMetadata/200706/
FederationMetadata.xml.
b. Enter the details of the entity ID and X.509 signing certificate in the respective boxes.
c. Enter the ADFS login URL address and the ADFS logout URL address in the respective boxes.
d. To enable tenants to configure Single Sign-On by using ADFS, select the Enable SSO login using ADFS check box. This
feature follows the Security Assertion and Markup Language (SAML) standard specification.
e. To validate the configuration information, click Test ADFS Login. This enables tenants to test their setup before saving.
Portal administration
113