Question

How can you automatically add domain users to Lab with the desired roles/permissions by utilizing LDAP groups.

 

Answer

  1. In Active Directory Administration Center, create a new group
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876472/original/2017-10-19_13_36_34-mRemoteNG_-_confCons.xml_-_LION.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165636Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=f75b391244c1668649080018451a2bd83808f0f8d9232559e06c53ea60ed2b39
  2. Add any desired users to that group
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876473/original/2017-10-19_13_38_02-mRemoteNG_-_confCons.xml_-_LION.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165636Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=b50593677940f6bcfde1911ee59252c57fb65ce3c2b0be60f328aab3a0778116
  3. On your Lab machine, launch Lab and log in with an existing Application Administrator account
  4. Go to Tools > Set LDAP Authentication
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876474/original/2017-10-19_13_40_59-mRemoteNG_-_confCons.xml_-_BEAST.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165636Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=7c77a4e56c7b2ec458714f7cbe4129fc4200d79fed4d3c701a1eff6c83b4ab4f
  5. Check "Enable LDAP authentication", enter your LDAP server and Base DN information as shown, and click OK
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876475/original/2017-10-19_13_43_52-mRemoteNG_-_confCons.xml_-_BEAST.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165637Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=f7f51ac5e3f5d0e53241feae6551e2be5bc992de7a645a4f1ce0990626df0a51
  6. Go to Database > Administer Groups
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876476/original/2017-10-19_13_45_20-mRemoteNG_-_confCons.xml_-_BEAST.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165637Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=ab613bcd4080b6cb3da7b724989e9e1c4bed376a23be36f9b02d358c6f2ee5fd
  7. Click "Select LDAP Groups"
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876477/original/2017-10-19_13_45_58-mRemoteNG_-_confCons.xml_-_BEAST.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165637Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=1ef3958d0eb3ef0a2643962495090076d5710606c23aa51c83f1b2b14f078f6a
  8. Check group from step 1 and click OK
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876478/original/2017-10-19_13_47_49-mRemoteNG_-_confCons.xml_-_BEAST.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165637Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=0bd189d319d99ad80da6ba8ebb2045d097ea0b9007b76c1b39f5924551639f34
  9. Highlight the newly added group on the left, select the desired role(s) to associate to it, click Save, then Close
    https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/69009876479/original/2017-10-19_13_48_37-mRemoteNG_-_confCons.xml_-_BEAST.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAS6FNSMY2XLZULJPI%2F20210926%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20210926T165637Z&X-Amz-Expires=300&X-Amz-SignedHeaders=host&X-Amz-Signature=1eb919be250bb02b31c684ac25108980db141717f0600506744c263788221be2
  10. On a machine with Lab, log into Windows as one of the users from step 2
  11. Launch Lab to be automatically logged in and given the appropriate role

 

Notes

  • This will not work if your account has already been created manually as a Trusted User, or if there is an existing Lab user account with your Domain username.
  • During step 11, Lab will automatically insert your user, with the appropriate role(s), into the Lab user database.
  • You must be logged in to Windows using the desired account for step 11.  Using "Run as different user" will not work.