User identity service deployment option

The following Kaspersky NGFW user identity service deployment options are available:

Minimum requirements for the devices

Depending on the deployment option, the Astra Linux 1.8.3 operating system must be installed on the device or on nodes (if deploying in a cluster).

The following applications and their dependencies must be installed on the device or nodes to support the user identity service:

Minimum hardware requirements for devices:

User identity service deployment procedure

The user identity service deployment scenario involves the following steps:

  1. Preparing configurations for user identity service components

    For each user identity service component, prepare configuration files in YAML format.

  2. Creating certificates

    Issue certificates for service components for connecting to Microsoft Active Directory domain controllers.

  3. Configuring a remote connection to the domain controller

    Configure a WinRM connection over HTTPS to your Microsoft Active Directory domain controller.

  4. Deploying the user identity service

    Depending on the chosen option, follow the steps to deploy the user identity service:

Page top