Professional Documents
Culture Documents
Authentication Suite
(CTAS) Version 2.1.1.5
Installation Guide
Version 7
Document Version 2.1.1.5 - 1.0 - 28/07/2014
Version 7
Version 7
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Important Notice
Cyberoam Technologies Pvt. Ltd. has supplied this Information believing it to be accurate and reliable at the time of printing, but
is presented without warranty of any kind, expressed or implied. Users must take full responsibility for their application of any
products. Cyberoam Technologies Pvt. Ltd. assumes no responsibility for any errors that may appear in this document.
Cyberoam Technologies Pvt. Ltd. reserves the right, without notice to make changes in product design or specifications.
Information is subject to change without notice.
USER’S LICENSE
Use of this product and document is subject to acceptance of the terms and conditions of Cyberoam End User License
Agreement (EULA) and Warranty Policy for Cyberoam UTM Appliances.
You will find the copy of the EULA at http://www.cyberoam.com/documents/EULA.html and the Warranty Policy for Cyberoam
UTM Appliances at http://kb.cyberoam.com.
RESTRICTED RIGHTS
Copyright 1999 - 2014 Cyberoam Technologies Pvt. Ltd. All rights reserved. Cyberoam, Cyberoam logo are trademark of
Cyberoam Technologies Pvt. Ltd.
Corporate Headquarters
Cyberoam Technologies Pvt. Ltd.
901, Silicon Tower, Off. C.G. Road,
Ahmedabad – 380006, INDIA
Phone: +91-79-66065606
Fax: +91-79-26407640
Web site: www.cyberoam.com
1/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Technical Support
You may direct all questions, comments, or requests concerning the software you purchased, your
registration status, or similar issues to Customer care/service department at the following address:
Corporate Office
Cyberoam Technologies Pvt. Ltd.
901, Silicon Tower
Off C.G. Road
Ahmedabad 380006
Gujarat, India.
Phone: +91-79-66065606
Fax: +91-79-26407640
Web site: www.cyberoam.com
Cyberoam contact:
Technical support (Corporate Office): +91-79-66065777
Email: support@cyberoam.com
Web site: www.cyberoam.com
2/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Contents
3/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Typographic Conventions
Cyberoam Transparent
typefaces
Navigation link Bold typeface Group Management > Groups > Create
it means, to open the required page click on Group
management then on Groups and finally click Create tab
Name of a Lowercase Enter policy name, replace policy name with the specific
particular italic type name of a policy
parameter / Or
field / command Click Name to select where Name denotes command button
button text text which is to be clicked
Cross Hyperlink in refer to Customizing User database Clicking on the link will
references different color open the particular topic
4/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Feature Overview
Cyberoam introduces Clientless Single Sign On as a Cyberoam Transparent Authentication Suite
(CTAS).
With Single Sign On authentication, user automatically logs on to the Cyberoam when logs on to
Windows through their windows username and password. Hence, eliminating the need of multiple
logins and usernames & passwords.
Moreover, Clientless Single Sign On not only eliminates the need to remember multiple passwords
– Windows and Cyberoam, it also eliminates the installation of SSO clients on each workstation.
Hence, delivering high ease-of-use to end-users, higher levels of security in addition to lowering
operational costs involved in client installation.
CTA Collector – It collects the user authentication request from multiple agents, processes the
request and sends to Cyberoam for authentication.
1. User tries to log on to the Active Directory Domain Controller from any workstation in LAN.
Domain Controller tries to authenticate user credentials.
2. This authentication process is captured and communicated to CTA Collector over default
TCP port 5566 by CTA Agent in real time.
3. CTA Collector registers user in the Local database and communicates user information to
Cyberoam over the default UDP port 6060.
4. Cyberoam queries Active Directory to determine user’s group membership and registers
user in Cyberoam database.
Based on data from CTA Agent, Cyberoam queries AD server to determine group membership
and based on which access is granted or denied. Users logged into a workstation directly i.e.
locally but not logged into the domain will not be authenticated and are considered as
“Unauthenticated” or “Guest” user. For users that are not logged into the domain, the HTTP Login
screen prompting for a manual login will be displayed for further authentication.
5/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Installation Steps
Step 1. Download CTA Suite
Download CTA Suite (CTAS 2.1.1.5.exe) from http://www.cyberoam.com/cyberoamclients.html.
Click “Clientless SSO” tab and download CTAS installer. Follow the on-screen instructions to
install CTA Suite on Active Directory Domain controller. Administrative right is required to install
CTA Suite.
6/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Step3.1. Migrate from CTAS Version 2.1.1.4 / 2.1.0.3 / 2.0.6.4 / 2.0.5.2 / 2.0.4.0
This step is applicable only if you have a previous version of CTA Suite already installed. In case
you want to do a fresh install, skip to step 3.2.
If you have a previous version of CTAS Suite already installed, you will come across the following
screen:
Select Yes in the screen below, if you want to save the settings configured in the previously
installed CTAS version:
7/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Note
This version of CTAS supports migration from only the following CTAS Versions:
CTAS Version 2.0.4.0, Version 2.0.5.2, Version 2.0.6.4, Version 2.1.0.3 and Version 2.1.1.4.
8/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Note
At least 4.1 MB of free disk space is required for installation to complete. Client will not be installed, if
there is no enough disk space.
9/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
10/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
11/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
12/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Select CTA Collector if you just want to collect the user authentication request from multiple
agents, process the request and send to Cyberoam for authentication.
Select SSO Suite to install both the above components. By default, entire SSO Suite is installed.
13/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
14/16
Cyberoam Transparent Authentication Suite (CTAS) Installation Guide
Post successful installation, you need to implement CTAS on your AD Server. After implementing
CTAS on the AD Server, you can integrate it with Cyberoam. For details, refer to the following KB
article(s):
Implement Clientless Single Sign On Authentication in Single Active Directory Domain
Controller Environment
OR
Implement Clientless SSO Authentication in Multiple Active Directory Domain Controller
15/16