To use Dell SonicWALL SSO, it is required that the SSO Agent be installed on a server that can communicate with
the Active Directory server and with clients and the Dell SonicWALL security appliance directly using the IP
address or using a path, such as VPN.
The following requirements must be met in order to run the SSO Agent:
•
Port 2258 must be open; the firewall uses UDP port 2258 by default to communicate with the SSO Agent;
if a custom port is configured instead of 2258, then this requirement applies to the custom port
•
Windows Server, with latest service pack
•
.NET Framework 4.0 or above
•
NETAPI or WMI (unless using DC Windows security log as the query source)
•
The SSO Agent must run under Domain Admin privileges.
About Single Sign-On with Novell eDirectory
Novell eDirectory (formerly known as Novell Directory Services (NDS), sometimes referred to as NetWare
Directory Services) is an X.500-compatible directory service software product initially released in 1993 by Novell
for centrally managing access to resources on multiple servers and computers within a given network.
eDirectory is a hierarchical, object oriented database used to represent certain assets in an organization in a
logical tree, including organizations, organizational units, people, positions, servers, volumes, workstations,
applications, printers, services, and groups.
When a user logs on to an eDirectory network, the user's IP address is added to the "networkAddress" field in
the user's record. If the user logs on to the eDirectory network multiple times from different machines, there
are multiple "networkAddress" fields. If the user logs off the eDirectory network properly, the corresponding
"networkAddress" field is removed immediately. Otherwise, the field is kept for some time before it is
removed.
For this user identification method, the SSO Agent repeatedly queries the eDirectory using the LDAP protocol as
follows:
1
The user logs in to the network and authenticates with eDirectory.
Dell SonicWALL Directory Services Connector 3.7
10
Administration Guide