Chat now with support
Chat with Support

Enterprise Single Sign-On 9.0.2 - QRentry Users Guide

Preface_1 QRentry Overview Preparing the mobile device to use Using Enterprise SSO for Mobile Devices Using QRentry Authentication Manager Managing Mobile Devices

QRentry audit events

QRentry audit events

QRentry audit events are recorded in the EAM audit database. As for any other EAM events, you can get information on the QRentry audit events through the Audit panel of the console.

The following QRentry audit events are recorded:

  • Enrollment for emergency access.
  • Enrollment for local administration access.
  • Authentication for emergency access.
  • Authentication for local administration.
  • Mobile device removal.

For details on the management of audit events, please refer to One Identity EAM Console Administrator's Guide.

Generating mobile device PDF reports

Generating mobile device PDF reports

For more information on generating reports, see One Identity EAM Console Administrator's Guide.

Managing mobile devices from the Authentication Manager tools

Managing mobile devices from the Authentication Manager tools

Subject

You can manage by yourself your mobile device(s) enrollment directly from your computer, using the Authentication Manager tools. A dedicated interface allows you to:

Window description

NOTE: To display the following window, right-click the Authentication Manager icon located in the notification area and select Mobile Device Enrollment

 

Item

Description

Your enrolled mobile devices area

This area displays the mobile devices associated with this user, and their status:

  • Mobile device enrolled.
  • Mobile device enrolled with local administration access.
  • Mobile device not yet enrolled.

 

Disable button

Disables the selected mobile device. The user can no longer use this device to log on.

Add button

Starts the enrollment wizard to enroll a new mobile device. For details, see Enrolling your mobile device.

Key ID

Private key ID of the selected mobile device.

NOTE: This ID is also available from the QRentry application installed on the mobile device.

Administration access area

  • This area appears only if you are member of a group that owns the local administration access permission. It displays the following information:
  • The list of the Access Point security profiles that contain the computers for which the selected mobile device can be used to log on as local administrator (Computer profile column).

NOTE:several Access Point security profiles can be listed if they use the same Active Directory group (for details, see Allowing users to log on as a local administrator).

  • The local administration roles associated with each security profile (Local admin role column).

For each profile, if the mobile device is enrolled or not for local administration access and the private administration key ID (Admin Key ID column).

NOTE: This ID is also available from the QRentry application installed on the mobile device.

Enroll button

Starts the enrollment wizard to enroll a mobile device to log on as local administrator on the computer. For details, see Enrolling your mobile device for local administration access.

Managing mobile devices from your mobile device

Managing mobile devices from your mobile device

Managing enrolled keys

Subject

You can check the private keys ID used by QRentry to perform the authentication process. If required, you can even delete these private keys.

When deleting a personal key, you must agree to delete your personal key along with the data currently stored in the mobile device: administrative keys, Personal Notes, applications and accounts, enrolled computers, audit events.

As the screen layout depends on the operating system of your mobile device, go to the following sections depending on the mobile device you possess:

Related Documents