立即与支持人员聊天
与支持团队交流

Safeguard Authentication Services 5.0.2 - Upgrade Guide

Privileged Access Suite for Unix Introducing One Identity Safeguard Authentication Services Upgrade the web console Upgrade Windows components Configure Active Directory Configure Unix agent components Upgrade client components manually Getting started with Safeguard Authentication Services
Getting acquainted with the Control Center Learning the basics
Troubleshooting

Upgrade Windows components

One Identity recommends that you upgrade your Windows components before you upgrade the Unix components.

The process for upgrading the Safeguard Authentication Services Windows components from older versions is similar to the initial installation process. The Safeguard Authentication Services Windows installer detects older versions and automatically upgrades them. The next time you launch Active Directory Users and Computers, you will see the updated Safeguard Authentication Services property tabs.

Note: Have your license available for the Setup wizard.

Upgrading Windows components

If you had a previous version of the One Identity Identity Manager for Unix web console, upgrade to the Management Console for Unix management console to take advantage of the new features.

To upgrade the Safeguard Authentication Services Windows components

  1. From the Safeguard Authentication Services Autorun Setup tab, click Safeguard Authentication Services to launch the Setup wizard.

    The InstallShield Wizard Welcome dialog indicates that a previous installation was found.

  2. Click Next in the Welcome dialog and follow the wizard prompts.

    The Setup Status dialog shows the progress of the upgrade:

    • Removing component registrations
    • Installing
    • Updating shortcuts
    • Registering components
  3. In the Update Complete dialog, indicate whether you want to restart your computer now or later.

If you choose No, I will restart my computer later, the old version of the Control Center opens; you must restart your computer to complete the upgrade process.

Configure Active Directory

To utilize full Active Directory functionality, when you install Safeguard Authentication Services in your environment, One Identity recommends that you prepare Active Directory to store the configuration settings that it uses. Safeguard Authentication Services adds the Unix properties of Active Directory users and groups to Active Directory and allows you to map a Unix user to an Active Directory user. This is a one-time process that creates the Safeguard Authentication Services application configuration in your forest.

Note: To use the Safeguard Authentication Services Active Directory Configuration Wizard, you must have rights to create and delete all child objects in the Active Directory container.

If you do not configure Active Directory for Safeguard Authentication Services, you can run your Safeguard Authentication Services client agent in Version 3 Compatibility Mode, which allows you to join a host to an Active Directory domain.

For more information, see Version 3 Compatibility Mode in the Safeguard Authentication Services Installation Guide.

When running Safeguard Authentication Services client agent in Version 3 Compatibility Mode, you have the option in One Identity Management Console for Unix to set the schema configuration to use Windows 2003 R2. See Configure Windows 2003 R2 Schema in the management console online help for details. The Windows 2003 R2 schema option extends the schema to support the direct look up of Unix identities in Active Directory domain servers.

Configuring Active Directory

The first time you install Safeguard Authentication Services in your environment, One Identity recommends that you perform this one-time Active Directory configuration step to utilize full Safeguard Authentication Services functionality.

Note: If you do not configure Active Directory for Safeguard Authentication Services, you can run your Safeguard Authentication Services client agent in Version 3 Compatibility Mode, which allows you to join a host to an Active Directory domain.

For more information, see Version 3 Compatibility Mode in the Safeguard Authentication Services Installation Guide.

To configure Active Directory for Safeguard Authentication Services

  1. In the Safeguard Authentication Services Active Directory Configuration Wizard Welcome dialog, click Next.
  2. In the Connect to Active Directory dialog:
    1. Provide Active Directory login credentials for the wizard to use for this task:
      • Select Use my current AD logon credentials if you are a user with permission to create a container in Active Directory.
      • Select Use different AD logon credentials to specify the Active Directory credentials of another user, enter the User name and Password.

      Note: The wizard does not save these credentials; it only uses them for this setup task.

    2. Indicate how you want to connect to Active Directory:

      Select whether to connect to an Active Directory Domain Controller or One Identity Active Roles Server.

      Note: If you have not installed the One Identity Active Roles Server MMC Console on your computer, the ActiveRoles Server option is not available.

    3. Optionally enter the domain or domain controller and click Next.
  3. In the License Safeguard Authentication Services dialog, for Add a license, browse to select your license file and click Next.

    Refer to About licenses for more information about licensing requirements.

    Note: You can add additional licenses later from Safeguard Authentication Services Control Center | Preferences | Licensing.

  4. In the Configure Settings in Active Directory dialog, accept the default location in which to store the configuration or browse to select the Active Directory location where you want to create the container and click Setup.

    Note: You must have rights to create and delete all child objects in the selected location. For more information on the structure and rights required see Windows permissions.

  5. Once you have configured Active Directory for Safeguard Authentication Services a message like this displays: You've successfully completed the setup. Click Close.

    The Control Center opens. You are now ready to configure your Unix Agent Components.

相关文档

The document was helpful.

选择评级

I easily found the information I needed.

选择评级