cancel
Showing results for 
Search instead for 
Did you mean: 

Implementing Access Control in SP5 Afaria

Former Member
0 Kudos

Hi Experts

I am trying to test Access control on SP5 HF6 environment with the O365. Being used to SP4 there are some new options in implementing access control in SP5 but their usage is not that clearly elaborated Tech Docs. Would Like to know whats the recommended Settings for implementing Access Control and a little idea about the options will be really helpful. Attached is the snapshot.

Regards

Batish

Accepted Solutions (1)

Accepted Solutions (1)

keith_nunn
Active Participant
0 Kudos

Hi, Batish.

In SP5 we added the option to pull a list of all devices that Exchange knows about, even if they're not under Afaria control.  The "List View" option provides you a way to either enable or disable the retrieval of that information.  "Exclude" would set Afaria to not pull the list.  "Include" would set Afaria to pull the list.

The "Remote" option is the ability to enable/disable actual remote processing of devices.  So, in essence, Access Control in general.  "Exclude" disables this, which means devices will not have Access Control commands processed.  "Include" enables it, which is essential to enabling Access Control processing.

The CAS URL should be the same as it has been but the Domain is the remote scope of the Exchange server itself.  You can tell Afaria whether the commands its sending should be processed from a local domain scope for the single Exchange Server's domain or a global scope for all domain's in the forest to which the Exchange Server belongs.

User and password are the same and are the admin account login that Exchange needs to process the commands.

Thanks,

Keith Nunn
SAP Active Global Support
SAP Canada

Former Member
0 Kudos

Thanks a lot Keith...

Further had a query as how can i use the feature of "List View"= include, from where and how can i extract and pull out the list of such devices.

Regards

Batish

keith_nunn
Active Participant
0 Kudos

Hi, Batish.

Once the data has been returned from Exchange, you can see it in the "Unmatched Email Device" device view.  You can get to it either from the Home page in the Admin or the Device page.  On the Home page, in the Device pane, along the top are icons.  It's the one that looks like a piece of paper with an envelope on the bottom right corner.  From the Device page, there is an icon on the left side border that is the same.

Thanks,

Keith

Former Member
0 Kudos

Hi Keith

Had one more question regarding the "Allow Afaria to make matches on ambiguous devices"?

How does this option work and how it interferes in the normal working of access control i.e Afaria should reject mails syncing to any kind of ambiguous devices.


Regards

Batish

keith_nunn
Active Participant
0 Kudos

Hi Batish.

If you check the option then Afaria will match based on a minimum of one piece of information.  For instance, in the case of a device registered in Afaria where we only have the Exchange user, if there is a device in Exchange with the same user identity that Afaria has not already matched this option would let Afaria match it and send a command for it.  That would be the case even though the ActiveSync ID for the device was not yet known to Afaria.  If you don't use this option then Afaria needs to have a match for both the Exchange user and the ASID in order to match and send commands.

Thanks,

Keith

Answers (0)