The single sign-on feature in Micetro allows users to sign in to the Web Application using their Active Directory (AD) credentials.
Note: This article assumes that both an Active Directory group has
already been added to Micetro AND Kerberos/NTLM has been added to the
preferences.cfg file for Micetro Web Services.
- For instructions on adding Kerberos/NTLM to the preferences.cfg file for Micetro Web Services, refer to API authentication methods.
- For instructions on adding AD groups to Micetro, refer to External authentication.
To configure single sign-on
To configure single sign-on:
- Make sure the user is a member of the Active Directory (AD) group already added to Micetro.
- Log into the workstation as the user.
- Open Internet Options on the Micetro machine that runs the Web Application, e.g., through the Settings dialog, search for Internet Options, or right-click on the Windows Desktop Start button and select Run.
- Enter
inetcpl.cpland then select OK to open the Internet Properties dialog. - On the Security tab, select Trusted sites and
then select Sites.
- In the Trusted sites dialog, enter the URL of the Micetro Web
Application, e.g., https://webapp.example.com, into the Add this website
to the zone field and then select Add.Note: If the Web Application is not running on HTTPS, it's necessary to clear the Require server verification for all sites in this zone checkbox.
- In the Internet Options dialog, select Custom level... to open Security Settings → Trusted Sites Zone.
- Make sure that, under User authentication→ Logon, the
Automatic logon with current user name and
password setting is selected. If not, select and apply the
setting.
- Open a web browser that supports single sign-on and navigate to the Micetro
Web Application URL.Note: Single sign-on is supported in Google Chrome, Microsoft Edge, and Mozilla Firefox. Please note that if you use Firefox, you may need to populate the Micetro Web Application URL under the about:config settings:
network.negotiate-auth.trusted-uris. - Enter the FQDN/IP address of the Micetro Central server in the Server field, if not already populated or set to Fixed.
- Select the Log in with single sign-on checkbox.
- Select Log in.