Register for Entrust iDaaS and configure Active Directory

This guide uses a standalone Entrust CloudControl deployment configured with Active Directory for authentication. CloudControl does support a cluster environment. For more information refer to the Entrust CloudControl Installation Guide in the online documentation.

Register for Entrust IDaaS

  1. Register at Start Free IDaaS Trial. Entrust provides a 60-day free trial.

  2. Once registered you will be assigned a unique Entrust IDaaS registration URL, for example https://example.US.trustedauth.com. Bookmark this URL.

Configure your Active Directory

CloudControl supports both local authentication and Active Directory for authentication. This integration uses Active Directory authentication. The following steps configure your DNS server. This may be a task for your system admin depending on your level of access privileges.

  1. Add a DNS entry for the Entrust CloudControl node in your domain controller.

  2. Add the following Active Directory users.

    Ensure the Last Name and Email fields are not empty.
    User Role

    htaServiceAccount

    Entrust CloudControl service account

    etccadmin

    Entrust CloudControl administrator whitelisted for direct login bypassing Entrust IDaaS authentication.

    etccuser

    Entrust CloudControl user to be validated by Entrust IDaaS authentication.

    idaasaduser

    Entrust IDaaS synchronization with your domain controller.

  3. Create a group in Active Directory called ASC_SuperAdmin.

  4. Make the etccadmin and etccuser users members of this group.