Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How can I Import Users from Active Directory by Using SSO?

How can I import users from Active Directory by using SSO? I almost read all posts in this blog and try to resolve it. But still not resolve. I need some one help please.



This thread was automatically locked due to age.
Parents
  • Server authentication has been done successfully. Groups are imported but not the users in the groups.

     

    STAS Agent & STAS Collector connection is always failing. Other thing testing are successfully done.

  • HI Muhammad, 

    We would need more info to deduct the issue . 

    Check the configuration is per our KB article https://Sophos.com/kb/123156  

    additional note :

    Use STAS Suite 
     console> system auth cta collector add collector-ip <ip-address of the AD server > collector-port 6677 create-new-collector-group

    Could you check if the Test on the Authentication server is successful or not , If not post a Snap Shot of the configuration and the error. 

    When you have a Successful test the  connection , then you may fetch Group by Wizard via the KB article https://Sophos.com/kb/123158 

    At this stage, you have imported the Groups but the users are not reflected . This is an expected behavior , As soon as a user is authenticated successfully via Captive portal, Client or SSO then that user will be available in Live Users and policy applied would be as per the Group Policy . As your users are sucessfully authenticated via SSO , it would show accordingly in your User list with their Domain. 

    Hope this would help you further.

     

     

     

  • Aditya Patel,

    I followed all the steps that you shared. But I only can import client through client authentication. But I want to import them through SSO which is not working. Please see the following errors.

    Please correct me if I am wrong to test the STAS Agent & STAS Collector I will use the IP in which the STATS Agent & Collector installed in it. It is showing failed connection error. But Sophos test is successfully done. 

     

  • Muhammad,

    Can you share the policy where you have enabled auditing? Also can you connect to a workstation with an ad user and check that the login log is inside the security event of AD server?

    Thanks

  • Snapshots are pasted below.

     

     

  • Muhammad,

    send me a PM and I will have a look at your error/misconfiguration.

    Regards

Reply Children
No Data