- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- Re: R81.20 SmartView Web Application no SSO?
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
R81.20 SmartView Web Application no SSO?
Hello,
if you open
https://<Management Server IP address>/smartconsole
you can use the configured IdP for the Admin access.
for
https://<IP Address of Management Server>/smartview/
it you can not.
Any thoughts on why?
Regards
Peter
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
That is expected behavior last I checked.
Also, I believe the Web SmartConsole effectively includes SmartView functionality.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
We've embedded the SmartView functionality into the Web SmartConsole, and we encourage customers to use it. It contains a lot of additional functionality on top of the /smartview web application, and this is where we direct a lot of our investment.
We do not currently plan to add SSO login to the /smartview app.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
That is expected behavior last I checked.
Also, I believe the Web SmartConsole effectively includes SmartView functionality.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Have you heard any rumors if it will be implemented, Or will the SmartView Web Application be ditched for web SmartConsole?
Regards
Peter
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Maybe good question to post in below forum?
Andy
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I will check myself in 2 weeks. Someone will be over from Israel to get our EA running.
Regards
Peter
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Sounds good, they would know for sure 🙂
Andy
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@Tomer_Noy any plan to implement SAML auth for SmartView?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
We've embedded the SmartView functionality into the Web SmartConsole, and we encourage customers to use it. It contains a lot of additional functionality on top of the /smartview web application, and this is where we direct a lot of our investment.
We do not currently plan to add SSO login to the /smartview app.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Are there any plans to restrict the appereance of specific menus in the web smartconsole? We have users that only need access to the firewall logs for which smartview is perfect. If we want use SAML they need to use the web smartconsole, but even if they have permissions only for the log view, they can see all gateways, policies and objects. It would be great if SSO login would be implemented to the smartview app or if there are a possibility to restrict the web smartconsole appereance that they only see the Logs & Monitor menu.
Is this something that is on the roadmap?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
What's available via Web SmartConsole is a function of the permissions profile you assign to the user.
I created a "Logs only" user with an appropriate permission profile and this is the extent of what I can see in the policy (at least in R82 EA):
Note that you cannot disable access to the Objects, but they are Read Only and, arguably, necessary to review the logs.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
If I click on the plus I can also see all the available policies which is not necessary in my opinion. In addition if you go to Gateways & Servers I can see all gateways and have read access to the information which I also don't need for a logs only user. So the best thing would be to grey out Gateway & Servers and Security Policies. In my opinion a logs only user just need access to the Logs & Event section. We use R81.20.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The idea of a pre-defined "logs only" admin user would likely require some additional efforts beyond how it displays in Web SmartConsole.
This is very likely an RFE.
