Active Directory (LDAP)

<< Click to Display Table of Contents >>

Navigation:  Water Activity Devices > HygroLab >

Active Directory (LDAP)

NOTE: This feature is only available with the Software Version 2.0.0.0 or higher.

Please contact your IT department to integrate the HygroLab into your active directory.

The HygroLab currently supports LDAP authentication, but does not support secure LDAP (LDAPS) connections. Authentication is performed using the LDAP server IP address (and optionally port).

 

Step 1

First go to the active directory settings go to "Settings" > "Device settings" > "Network settings".

 

clip0013

 

Step 2

Activate LDAP and put in the correct active directory link, which you will get from your IT department.

 

clip0048

 

Step 3

This step needs to be done by your IT department.

 
The IT department needs to create for example a new admin like a "HygrolabAdmin". This "HygrolabAdmin" has to be created in the active directory in "Groups" as "Security Group" account.

Then the user (which will be used in the HygroLab) must be assigned to this security group as a member in "Members"

 

clip0050

 

 

 

 

Step 7

Create then in the HygroLab a new user role which can be assigned to the user in the active directory.

Go into "Settings" > "Users & Roles" > "Role management".

After that you can then log in to the HygroLab with your on respectively your company user name and password.

 

After successful authentication, the HygroLab maps the Active Directory group returned for the user to a role configured on the device. Make sure that the corresponding role has been created under Settings > Users & Roles > Role management.

An Invalid Credentials message does not necessarily mean that the user name or password is incorrect. The message may also appear if authentication was successful but the Active Directory group could not be mapped to a HygroLab role.

If login continues to fail, verify:

the Active Directory groups assigned to the user;

the roles configured in the HygroLab;

the LDAP server IP address and port;

the LDAP/Active Directory debug logs from the authentication attempt.

 

Contact Rotronic Support if the cause cannot be identified.

 

clip0049