Feature/Application:
The SonicWall SSO Agent can be installed on any workstation with a Windows domain that can communicate with clients and the SonicWall security appliance directly using the IP address or using a path, such as VPN.
TIP: For installation instructions for the SonicWall SSO Agent, refer to the How To Install Single Sign On (SSO) Software And Configure The SSO Feature.
The SonicWall SSO Agent only communicates with clients and the SonicWall security appliance. SonicWall SSO Agent uses a shared key for encryption of messages between the SSO Agent and the SonicWall security appliance. The shared key is generated in the SSO Agent and the key entered in the SonicWall security appliance during SSO configuration must match the SSO Agent-generated key exactly.
The SonicWall security appliance queries the SonicWall SSO Agent over the default port 2258. The SSO Agent then communicates between the client and the SonicWall security appliance to determine the client’s user ID. The SonicWall SSO Agent is polled, at a rate that is configurable by the administrator, by the SonicWall security appliance to continually confirm a user’s login status.
NOTE: SonicWall SSO agent tries to identify the logged in user by querying the workstations using NETAPI or WMI protocols. NETAPI and WMI require file & print sharing enabled on the end workstations.
Logging
NOTE: The notes field of log messages specific to the SSO Agent will contain the text , authentication by SSO Agent.