Add a desktop SSO Auth Module
Add a desktop SSO Auth Module to add a secondary authentication relationship between Access Gateway and a Kerberos instance.
An active Kerberos Configuration must exist before you can create a Desktop SSO module. See Add a Kerberos application.
Add an Auth Module and select Desktop SSO.
- Enter the following details in the Add New Auth Module dialog:
Field Description Name Name used to identify the Auth Module.
If you select this option, use LDAPS.
Host URL to LDAP server and port (for example, myKerberos.example.com)
Port for use with Active Directory (for example, 389)
Username used to perform reads and writes (for example, CN=Administrator,CN=Users,DC=someuser,DC=info)
Bind User Password
Bind User password.
The base DN from which the search is done (for example, CN=Users,DC=domain,DC=tld)
User Search Attribute
The filter used to match records returned from the Search DN (for example, accountname).
Set of attributes returned from Active Directory and sent as SAML attributes to application (for example, cn, mail, name, userPrincipalName).
Optional. Enter description
- Click Not Validated. Okta Access Gateway attempts to validate the connection. If successful, the label changes to Valid.
- Click Okay.