Domain Authentication + Local Device Authentication; Linkage With Department Id Management When Using Sso-H; Differences From Conventional Sso - Canon imageRUNNER ADVANCE 8105 Series Service Manual

Hide thumbs Also See for imageRUNNER ADVANCE 8105 Series:
Table of Contents

Advertisement

2
Technology > MEAP > Login Service > Authentication methods of SSO-H

Differences from conventional SSO

Domain B
Domain C
DC
DC
DC
SA
Device
Domain A
SSO

Domain authentication + local device authentication

This is a user authentication method that provides both domain authentication and local
device authentication functionalities. Principally, domain users who are registered/ managed
by the Active Directory are authenticated by domain authentication, and local device
authentication can be used when it is necessary to authenticate a temporary user that cannot
be added to the Active Directory. Also, should there be any kind of a problem with the domain
controller or Security Agent (SSO only), local device authentication can be used in emergency
situations, while waiting for normal status to be restored.
In the figure shown below, users belonging to Domain A, which includes the iR device,
and users belonging to Domain B, which has a reliable relationship with Domain A, can be
authenticated, and users registered with the iR device itself can also be registered. The login
destination (domain name or [This device]) is se lected by the user upon login.
Domain A
Domain Controller
(Active Directory )
iR Device
Domain A User
2
Technology > MEAP > Login Service > Authentication methods of SSO-H
Domain B
Domain C
DC
DC
DC
Device
Domain A
SSO-H
F-2-271
F-2-271
Domain B
Domain Controller
(Active Directory )
Domain B User
F-2-272
F-2-272
CAUTION:
To run domain authentication and Department ID management at the same time,
the options Net Spot Accountant, iW Accounting Manager or iW EMC Accounting
Management Plug-in are required. If domain authentication is selected as the
authentication method without linkage to these systems, login will be disabled and
Department ID management will not come ON. If Department ID management
cannot be turned ON when using domain authentication and login is disabled, switch
the login service to Default Authentication and turn Department ID management
OFF.
In order to link local device authentication and Department ID management and
manage print pages and scan pages per department ID, Department ID management
must be set ON. To run local device authentication and Department ID management at
the same time, the information registered in local device authentication must match
the Department ID management user information (department ID and password).
In local device authentication the card reader for the option control card cannot be
used.

Linkage with Department ID management when using SSO-H

SSO-H has collaborative linkage with imageWARE/iW Enterprise Management Console
Access Management Plug-in, imageWARE/iW Enterprise Management Console Accounting
Management Plug-in. Only when used with 'Local device authentication', can department ID/
passwords be allocated to users.
In the event that these are allocated, authentication can be performed even when the main
unit's department management is ON. Department ID and department passwords are not
allocated to domain users.
When the main unit's department management function is ON, domain users cannot be
authenticated.
MEMO:
With SSO, linkage with imageWARE/iW Enterprise Management Console Accounting
Management Plug-in was assumed and department management linkage was enabled
even in domain authentication, but with SSO-H, this is now unsupported.
2-196
2-196

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents