Summary
Learn how to allow the Endpoint Encryption clients to use the Token Authentication or SSO.
Details
To enable Token Authentication or SSO:
- Set the following PolicyServer settings to a group as Token Authentication group.
For PolicyServer Policies 3.1.2
- Common
Common > Authentication > NetworkLogin > DomainAuthentication=No
- Full Disk Encryption
PC > Login > TokenAuthentication=Enabled
PC > Login > TokenAuthentication > TokenPassthru= Yes/No
PC > Login > TokenAuthentication > TokenRemoval=Ignore/LockWorkstation/Reboot/Shutdown (Recommended to set as "Ignore" if "TokenPassThru=Yes")
PC > Password= AllowedAuthenticationMethods= Fixed has to be available - File Encryption
Password > PhysicalTokenRequired=Yes
- DriveArmor
Authentication > NetworkLogin > TokenAuthentication=Enabled
Authentication > NetworkLogin > TokenAuthentication > TokenPassthru= Yes/No
For PolicyServer Policies 3.1.1 and below- Full Disk Encryption
PC > Login > DomainAuthentication= No
PC > Login > TokenAuthentication= Enabled
PC > Login > TokenAuthentication > TokenPassthru= Yes/No
PC > Login > TokenAuthentication > TokenRemoval= Ignore/LockWorkstation/Reboot/Shutdown (Recommended to set as "Ignore" if "TokenPassThru=Yes")
Password > AllowedAuthenticationMethods= Fixed has to be available - File Encryption
Login > DomainAuthentication= No
Password > PhysicalTokenRequired= Yes - DriveArmor
Authentication > NetworkLogin= Enabled
Authentication > NetworkLogin > DomainAuthentication= No
Authentication > NetworkLogin > TokenAuthentication= Enabled
Authentication > NetworkLogin > TokenAuthentication > TokenPassthru= Yes/No
- Common
- Add users into the group.
- Assign a One-Time Password to the users.