Hitachi

JP1 Version 13 JP1/IT Desktop Management 2 Overview and System Design Guide


2.3.2 Authentication methods for user accounts

There are two methods for authenticating JP1/IT Desktop Management 2 user accounts: ITDM2 authentication and JP1 authentication.

If you use ITDM2 authentication, you can also use IDaaS linkage that uses user Information managed by ID Provider (IdP) and multi-factor authentication provided by IdP.

Important

You must use the same authentication method for all user accounts. (You cannot use ITDM2 authentication and JP1 authentication at the same time.)

Important

When using IDaaS linkage, JP1 authorization cannot be used.

ITDM2 authentication

This method authenticates user accounts within the JP1/IT Desktop Management 2 system. User accounts are created in the JP1/IT Desktop Management 2 operation window and managed by JP1/IT Desktop Management 2 - Manager. This is the standard method for authenticating user accounts in a JP1/IT Desktop Management 2 system.

The following figure shows how ITDM2 authentication works.

[Figure]

IDaaS linkage

This method links IdP and JP1/IT Desktop Management 2 . By registering the same user ID in the IdP and JP1/IT Desktop Management 2, you can authenticate JP1/IT Desktop Management 2 with the authentication function provided by the IdP.

The following four programs can be authenticated with IDaaS linkage.

  • Operation window for JP1/IT Desktop Management 2 - Manager

  • Remote Instal Manager

  • Packager

  • Network Control Command

The following diagram shows the mechanism of IDaaS linkage.

[Figure]

JP1 authentication

This method uses JP1/Base for integrated management and authentication of user accounts. User accounts (JP1 users) are created in JP1/Base and managed by using an authentication server. If you are using JP1 authentication for another JP1 product, you can use the user accounts of that product. If you are using JP1/IM, you can link JP1/IM with the email notification function.

The following three programs use JP1 authentication:

  • JP1/IT Desktop Management 2 - Manager operation window

  • Remote Install Manager

  • Packager

Important

If you use JP1 authentication, you cannot set an administration scope.

The following figure shows how JP1 authentication works.

[Figure]