Versions Compared
Key
- This line was added.
- This line was removed.
- Formatting was changed.
Indeed PAM Gateway
The Indeed PAM Gateway component is installed onto Remote Desktop Session Host server. If there are several RDSH servers, then the Indeed PAM Gateway has to be installed onto each of them.
| Warning | ||
|---|---|---|
| ||
All URLs are specified in lowercase. |
Switch to C:\Program Files\Indeed PAM\Gateway\ProxyApp folder and edit Pam.Proxy.App.exe.config file:
Api section
ApiUrl - URL of Indeed PAM Core
Code Block language js "Api": { "ApiUrl": "https://pam.domain.local/pam/core"
Auth section
- IdpUrl - URL of Indeed PAM IdP
GatewaySecret - Secret for additional component authentication
Note icon false The secret is generated by the console utility Pam.ConsoleApp.exe
Code Block language js "Auth": { "IdpUrl": "https://pam.domain.local/pam/idp", "IdpRequiresHttps": true, "GatewaySecret": "m0Kvn2YdIAivB2UeILq65y5Qio2eijY+kmbjyn8istcQLU/xRLUowkCR5WEFSaagrv/s7Dc+Nm9pn09NAA0xVA==" },
Media section
VideoTempPath - path to the temporary files folder
Code Block language js "Media": { "VideoTempPath": "C:\\ProgramData\\Indeed\\Pam\\VideoTemp\\" },
Configuration of session collection
- Log in to the server that performs Remote Desktop Connection Broker role and run Server Manager
- Switch to Remote Desktop Services - Collections
- In the Collections section click Tasks and select the Create session collections item
- Create a collection with parameters you need using the wizard
- Click Tasks in the RemoteApp Programs section and select Publish RemoteApp Programs item
- Click Add, select the C:\Program Files\Indeed PAM\Gateway\ProxyApp\Pam.Proxy.App.exe application, click Next and then Publish
- Open the context menu of the published application in the RemoteApp Programs section and select Edit Properties item
- Switch to Parameters, mark the Allow any command-line parameters option and click ОK
Configuration of access to web applications
Installation of Indeed-Id ESSO Agent/Admin Pack
To access web applications through Indeed PAM, you will need to install additional Indeed-Id components:
- Indeed-Id Admin Pack
- Indeed-Id ESSO Agent
- Browser extensions
| Warning | ||
|---|---|---|
| ||
|
Configuring the Internet Explorer extension via group policies
After Indeed-Id ESSO Agent is installed, the extension is automatically added to Internet Explorer, but it is disabled. To enable and configure extension automatically, proceed as follows:
Switch to
| Tip | ||
|---|---|---|
| ||
Computer Configuration\Policies\Administrative Templates\Windows Components\Internet Explorer\Security Features\Add-on Management |
Image RemovedSwitch to
| Tip | ||
|---|---|---|
| ||
Computer configuration\Policies\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page |
Image RemovedSwitch to
| Tip | ||
|---|---|---|
| ||
Computer configuration\Policies\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Advanced Page |
Configuring the Google Chrome extension via group policies
| Warning | ||
|---|---|---|
| ||
Distribution of Google Chrome extension via group policies is only possible if Indeed-Id ESSO Agent is installed with Install2.bat. Also, a server with Internet Information Services (IIS) role is required to distribute the extension. |
Image Removed
Image RemovedSend the URL of ChromeExtension application to support@indeed-id.com
| Note | ||
|---|---|---|
| ||
Example: https://server.indeed-id.local/ChromeExtension |
- Update.xml
- icpjelgegalmjjkfoilkbeeodgfbcaam.crx
Switch to
| Tip | ||
|---|---|---|
| ||
Computer Configuration/Administrative Templates/Google/Google Chrome/Extensions |
Image Removed| Note | ||
|---|---|---|
| ||
The separator between the application ID and the URL is a semicolon. |
Open the Configure extension, app, and user script install sources, set the switch to Enabled and click Show in the Options section
Image Removed| Note | ||
|---|---|---|
| ||
The URL must end with an asterisk |
| Backtotop | ||||
|---|---|---|---|---|
|
| Divbox | ||||
|---|---|---|---|---|
| ||||
|