[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

RSA across domains

Posted on 2012-03-19
4
Medium Priority
?
290 Views
Last Modified: 2012-07-15
Hi,

One of our customers are looking to implement RSA across their network.  They have two domains (one for their office and one for their datacentre).  Users that have a datacentre account will have it named the same as their office account.

Obviously we'd prefer it if users only have one fob so I'm wondering how (if possible) we can go about this.

Thanks in advance
0
Comment
Question by:wanstor
  • 2
  • 2
4 Comments
 
LVL 65

Expert Comment

by:btan
ID: 37740780
Was thinking of web access gateway which take in username@domain as username and perform backend ldap and rsa check. It offload the check through such central portal login page. If this something you are interested, I can share more..
0
 
LVL 1

Accepted Solution

by:
wanstor earned 0 total points
ID: 37741491
Yes please do.  We have a VPN between the two sites and if required we can set up a one way trust if that makes any difference.

Thanks
0
 
LVL 65

Expert Comment

by:btan
ID: 37742936
Know of F5 access policy mgr which can act as the middle man to performs client side prelogin check and rsathen doa whilesever checks. Ldap, ad and kerberos login and rsa secureid is supported. There is their webtop that can present the authorised resource base on the visual workflow policy builder created. Scripts for customization is available. Importantly all userchecks usingis transparent to it and act as a guardian.

 http://www.f5.com/products/big-ip/access-policy-manager.html
0
 
LVL 1

Author Closing Comment

by:wanstor
ID: 38187121
Setting up a one way trust between the two domains seemed to have resolved the issue. Thanks All!
0

Featured Post

2017 Webroot Threat Report

MSPs: Get the facts you need to protect your clients.
The 2017 Webroot Threat Report provides a uniquely insightful global view into the analysis and discoveries made by the Webroot® Threat Intelligence Platform to provide insights on key trends and risks as seen by our users.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Sometimes Administrators rights are not enough. These cases call for the SYSTEM account. The process in this article outlines the steps required to execute commands using the SYSTEM account.
Experts Exchange expands question security options for members.
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …
When cloud platforms entered the scene, users and companies jumped on board to take advantage of the many benefits, like the ability to work and connect with company information from various locations. What many didn't foresee was the increased risk…
Suggested Courses

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question