Chapter 20 Web Authentication
ZyWALL/USG Series User’s Guide
452
20.4 SSO - ZyWALL/USG Configuration
This section shows what you have to do on the ZyWALL/USG in order to use SSO.
20.4.1 Configuration Overview
These are the screens you need to configure:
• Configure the ZyWALL/USG to Communicate with SSO on page 452
• Enable Web Authentication on page 453
• Create a Security Policy on page 454
• Configure User Information on page 455
• Configure an Authentication Method on page 456
• Configure Active Directory on page 457 or Configure Active Directory on page 457
20.4.2 Configure the ZyWALL/USG to Communicate with SSO
Use Configuration > Web Authentication > SSO to configure how the ZyWALL/USG
communicates with the Single Sign-On (SSO) agent.
Table 165 ZyWALL/USG - SSO Agent Field Mapping
ZYWALL/USG SSO
SCREEN FIELD SCREEN FIELD
Web Authentication >
SSO
Listen Port Agent Configuration
Page > Gateway
Setting
Gateway Port
Web Authentication >
SSO
Primary Agent Port Agent Configuration
Page
Agent Listening Port
Object > User/Group
> User > Add
Group Identifier Agent Configuration
Page > Configure
LDAP/AD Server
Group Membership
Object > AAA Server >
Active Directory > Add
Base DN Agent Configuration
Page > Configure
LDAP/AD Server
Base DN
Object > AAA Server >
Active Directory > Add
Bind DN Agent Configuration
Page > Configure
LDAP/AD Server
Bind DN
Object > User/Group
> User > Add
User Name Agent Configuration
Page > Configure
LDAP/AD Server
Login Name Attribute
Object > AAA Server >
Active Directory > Add
Server Address Agent Configuration
Page > Configure
LDAP/AD Server
Server Address
Network > Interface >
Ethernet > wan (IPv4)
IP address Agent Configuration
Page > Gateway
Setting
Gateway IP