Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Prior to the installation of the DualShield MFA server, prepare the following items:

  1. A Windows or Linux server machine (virtual or real machine) with 8GM RAM, 4-core CPU, and 10GB free disk space 

    Expand
    titleHardware and Software Specification for DualShield Server...

    Include Page
    Hardware and Software Specification for DualShield Server
    Hardware and Software Specification for DualShield Server


  2. An FQDN for your DualShield MFA server consoles, e.g. mfa.acme.com

    Expand
    titleFQDN for DualShield Consoles....

    Include Page
    FQDN for DualShield Consoles
    FQDN for DualShield Consoles


  3. An SSL certificate for your DualShield MFA server consoles in a PFX file (a wildcard certificate is acceptable, e.g. *.acme.com)

    Expand
    titleSSL Certificate for DualShield Consoles....

    Include Page
    SSL Certificate for DualShield Consoles
    SSL Certificate for DualShield Consoles


  4. An AD service account (domain user) to be used for the connection between your MFA server and AD server
  5. An AD group for MFA – only users in the MFA group will be MFA enabled
  6. (Optional) If you need to implement one of the following functions or features, then you need to configure your corporate firewall and open HTTP port 8074 and 8076, forward traffic to your DualShield MFA server
    1. Push Authentication
    2. Self-Services such as downloading MobileID tokens, activating DeviceID tokens, etc. 
    3. SAML integration with external cloud services such as Office 465, SalesForce, Zoom, etc.
  7. Download the DualShield server software from https://support.deepnetsecurity.com, and save it on your DualShield MFA server machine

...