サポートと今すぐチャット
サポートとのチャット

Safeguard Authentication Services 5.1.2 - Administration Guide

Privileged Access Suite for UNIX Introducing One Identity Safeguard Authentication Services Unix administration and configuration Identity management Migrating from NIS Managing access control Managing local file permissions Certificate Autoenrollment Integrating with other applications Managing UNIX hosts with Group Policy
Safeguard Authentication Services Group Policy
Group Policy Concepts Unix policies One Identity policies
Display specifiers Troubleshooting Glossary

Quest OpenSSH Configuration policy

OpenSSH provides password-less (by means of GSSAPI), secure, encrypted remote login and file transfer services.

The Quest OpenSSH Configuration policy allows you to manage the OpenSSH server configuration file (sshd.conf) by means of Group Policy. Settings are divided into two sections. The first section contains general SSH server settings. The second section contains settings that are specific to or important for the Quest OpenSSH distribution.

For more information on specific settings, see the sshd-config.conf man page.

Licensing policy

You can maintain and distribute license files through Safeguard Authentication Services Group Policy using the Licensing Policy. This policy is retained for backward compatibility. Alternatively, in Safeguard Authentication Services 5.1.2 and above, you can use the Safeguard Authentication Services Control Center to manage licenses.

The Safeguard Authentication Services Licensing policy allows you to specify a set of license files. The next time the Group Policy agent does a policy refresh, Group Policy distributes the license files to the UNIX system and performs any additional actions that may be necessary to load the license file information.

Safeguard Authentication Services Licensing entries are append only and cannot be overridden. However, if there is more than one license file with the same serial number, the file is only installed once.

Adding a license file

To add an Safeguard Authentication Services license file

  1. Start Group Policy Editor.

  2. Select UNIX Settings > Authentication Services > Client Configuration in the scope view.

  3. Double-click Licensing.

    The Licensing Properties dialog opens.

  4. Click Browse.

  5. Navigate to the license file.

  6. Select the license file and click OK.

  7. Click OK to save settings and close the Licensing Properties dialog.

Defender Settings policy

The Defender Settings policy provides one-time password authentication. Install Defender on Unix or Linux to use two-factor authentication to secure critical resources. To access a host running Defender, you must enter a one-time password in addition to the account password.

Configure the Defender Settings policy to enable PAM authentication. The Group Policy agent on Unix configures Defender based on the existing Defender access nodes in Active Directory. This allows you to configure which users to prompt for a one-time password as well as which Defender server the agents can communicate with. For more information on configuring Defender access nodes, see the One Identity Defender documentation.

関連ドキュメント

The document was helpful.

評価を選択

I easily found the information I needed.

評価を選択