Hitachi

JP1 Version 12 JP1/Data Highway - Server Administrator Guide


3.5.2 Domain settings change

This subsection describes the operation for changing domain settings. Note that some items cannot be changed depending on the settings specified by the system administrator.

  1. In the sidebar area, click Users & Groups.

    The Users & Groups window appears in the content area.

    Click the group to which the new group will belong, and then select New Group.

  2. Click the group of the domain you want to change, then select Edit.

    The Edit Group window appears.

  3. Change the settings.

    [Figure]

    The following table describes the settings items. Some items cannot be configured depending on the system settings.

    Table 3‒18: Settings items in the Basic tab (domain group)

    Item

    Description

    Download limit

    Enter the maximum amount of data that can be downloaded per month by the entire domain in the unit of MB.

    The minimum specifiable value is 0, and the maximum specifiable value is 8,796,093,022,207.

    SSO(SAML)

    Select this check box if Single Sign-On authentication is used to access the system.

    • Idp(URL)

      Specify the URL used for Single Sign-On.

    • NameIdPolicyFormat

      Specify the policy format of the user identifier in the authentication response message for Single Sign-On authentication.

    • IdP certificate

      Open the certificate in PEM format or metadata from the Idp using UTF-8 encoding, and copy and paste the contents into the text area.

    The following is the metadata for JP1/DH - Server (service provider).

    For domainName, specify the domain name (the part after @ of the user ID) in English.

    <?xml version="1.0" encoding="UTF-8" ?>
     
    <EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://URL of JP1/DH - Server:443/">
      <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
     
        <NameIDFormat>
          urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified
        </NameIDFormat>
     
        <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0::HTTP-POST" Location="https://URL of JP1/DH - Server:443/SSOLoginExecuteSAML?domain=domainName" index="0"/>
       </SPSSODescriptor>
    </EntityDescriptor>
    Important

    Specify URL of JP1/DH - Server in FQDN format. For example, if the URL for the login window is https://aaa.bbb.ccc/index.jspx, then aaa.bbb.ccc is the FQDN.

  4. Configure the settings in the Properties tab and the Address Book Manager tab.

    For details, see 3.4.2 (8) Creating a group.

  5. Click the update button.

    The group settings are updated.