cancel
Showing results for 
Search instead for 
Did you mean: 

Mobile secure lock-down

pavlo_denysyuk
Participant
0 Kudos

Hi experts, I am totally new to mobile secure ( MS ). I am dealing with MS from HANA CLOUD PLATFORM trial account.

I managed to unboard 2 devices : ios and adnroid. I could lock devices, use PUSH, on android I even can track location.

     When user tries to unlock device - He should see login screen with company credentials ( I know that it could be done through "use enterprise authorization" and active directory LDAP ). That way we would know who is dealing with device when we need it ! Need some step by step instructions .

1. How to ask for credentials after device is unlocked ?

2. How to connect SAP Identity provider with company's active directory ?

Thanks in advance.

Accepted Solutions (0)

Answers (1)

Answers (1)

tracy_barkley
Employee
Employee
0 Kudos

Pavlo,

When you send an unlock to the android device, the user should be prompted only for the passcode or pin on the device at the time, not the AD credentials.  It is merely a device unlock not a authorization.  Androids work very differently than iOS. If you turn authentication on on the enrollment server, the iOS device will be prompted.

For question 1 the only time you would get an authetication request is if the device ran an application or session policy, where authentication was turned on at the package server/server and the authentication window had expired.

For question 2 I am not sure I fully understand what you are trying to do.

If you do not want your users to have an AD authentication and you want to authenticate your users, you can look at the documentation for the Cloud Identity service.

http://help.sap.com/cloud_identity?current=nwidm

If you want to use the AD authentication the documentation is here http://help.sap.com/Download/Multimedia/pdf-mobilesecure/Enterprise_Access_Installation_Instructions...

If you are interested in using Single sign on with AD https://wiki.scn.sap.com/wiki/display/SAPMOB/SAP+Mobile+Secure+supports+SAML+Single+Sign-On

Tracy Barkley

Sr. TSE