Chapter 19 Web Authentication
USG20(W)-VPN Series User’s Guide
305
19.4 SSO - USG Configuration
This section shows what you have to do on the USG in order to use SSO.
19.4.1 Configuration Overview
These are the screens you need to configure:
• Configure the USG to Communicate with SSO on page 305
• Enable Web Authentication on page 306
• Create a Security Policy on page 307
• Configure User Information on page 308
• Configure an Authentication Method on page 309
• Configure Active Directory on page 310 or Configure Active Directory on page 310
19.4.2 Configure the USG to Communicate with SSO
Use Configuration > Web Authentication > SSO to configure how the USG communicates with
the Single Sign-On (SSO) agent.
Table 122 USG - SSO Agent Field Mapping
USG SSO
SCREEN FIELD SCREEN FIELD
Web Authentication >
SSO
Listen Port Agent Configuration
Page > Gateway
Setting
Gateway Port
Web Authentication >
SSO
Primary Agent Port Agent Configuration
Page
Agent Listening Port
Object > User/Group
> User > Add
Group Identifier Agent Configuration
Page > Configure
LDAP/AD Server
Group Membership
Object > AAA Server >
Active Directory > Add
Base DN Agent Configuration
Page > Configure
LDAP/AD Server
Base DN
Object > AAA Server >
Active Directory > Add
Bind DN Agent Configuration
Page > Configure
LDAP/AD Server
Bind DN
Object > User/Group
> User > Add
User Name Agent Configuration
Page > Configure
LDAP/AD Server
Login Name Attribute
Object > AAA Server >
Active Directory > Add
Server Address Agent Configuration
Page > Configure
LDAP/AD Server
Server Address
Network > Interface >
Ethernet > wan (IPv4)
IP address Agent Configuration
Page > Gateway
Setting
Gateway IP