+
+1. Select **Enter data about the relying party manually** as the option for obtaining data about the relying party.
+
+
+
+1. Enter your desired **Display name** for your Relying Party Trust. For example, `Rancher`.
+
+
+
+1. Select **AD FS profile** as the configuration profile for your relying party trust.
+
+
+
+1. Leave the **optional token encryption certificate** empty, as Rancher AD FS will not be using one.
+
+
+
+1. Select **Enable support for the SAML 2.0 WebSSO protocol**
+ and enter `https://
+
+1. Add `https://
+
+1. This tutorial will not cover multi-factor authentication; please refer to the [Microsoft documentation](https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/operations/configure-additional-authentication-methods-for-ad-fs) if you would like to configure multi-factor authentication.
+
+
+
+1. From **Choose Issuance Authorization RUles**, you may select either of the options available according to use case. However, for the purposes of this guide, select **Permit all users to access this relying party**.
+
+
+
+1. After reviewing your settings, select **Next** to add the relying party trust.
+
+
+
+
+1. Select **Open the Edit Claim Rules...** and click **Close**.
+
+
+
+1. On the **Issuance Transform Rules** tab, click **Add Rule...**.
+
+
+
+1. Select **Send LDAP Attributes as Claims** as the **Claim rule template**.
+
+
+
+1. Set the **Claim rule name** to your desired name (for example, `Rancher Attributes`) and select **Active Directory** as the **Attribute store**. Create the following mapping to reflect the table below:
+
+ | LDAP Attribute | Outgoing Claim Type |
+ | -------------------------------------------- | ------------------- |
+ | Given-Name | Given Name |
+ | User-Principal-Name | UPN |
+ | Token-Groups - Qualified by Long Domain Name | Group |
+ | SAM-Account-Name | Name |
+
+
+1. Download the `federationmetadata.xml` from your AD server at:
+```
+https://| Deployment Size | +Clusters | +Nodes | +vCPUs | +RAM | +
|---|---|---|---|---|
| Small | +Up to 10 | +Up to 50 | +2 | +4GB | +
| Medium | +Up to 100 | +Up to 500 | +8 | +32GB | +
| Large | +Over 100 | +Over 500 | +Contact Rancher | +|
{{ .Summary | safeHTML }}
+ {{ if .Truncated }} +{{ .Summary | safeHTML }}
- {{ if .Truncated }} --- -{{ end }} diff --git a/layouts/shortcodes/note_server-tags.html b/layouts/shortcodes/note_server-tags.html index 6a03c80a3ca..3911c33106a 100644 --- a/layouts/shortcodes/note_server-tags.html +++ b/layouts/shortcodes/note_server-tags.html @@ -1,8 +1,8 @@"{{.quote}}"-
------
- {{.source}},-
{{.position}}, {{.company}} -
-diff --git a/layouts/shortcodes/partners.html b/layouts/shortcodes/partners.html deleted file mode 100644 index c0d9933d93b..00000000000 --- a/layouts/shortcodes/partners.html +++ /dev/null @@ -1,14 +0,0 @@ -Note:
- -The
-rancher/ranchercontainer is hosted on DockerHub. If you don't have access to DockerHub, or you are installing Rancher without an Internet connection, refer to how to prepare for an Air Gap Installation.Note:
-For a list of other Rancher Server tags available, refer to Rancher Server Tags.
- +Notes:
++
- If you are using RancherOS, make sure you switch the Docker engine to a supported version using
+sudo ros engine switch docker-17.03.2-ce+- The
+rancher/ranchercontainer is hosted on DockerHub. If you don't have access to DockerHub, or you are installing Rancher without an Internet connection, refer to how to prepare for an Air Gap Installation.
{{.description}}
- - {{ range .type }} - {{ . }} - {{ end }} - -Docker
-Note:If you are using RancherOS, make sure you switch the Docker engine to a supported version using sudo ros engine switch docker-17.03.2-ce
- Supported Versions
+ +A supported version of Docker is required.
+Supported Versions:
1.12.61.13.1| Rancher Version | -Release Date | -End full support | -Dend maintainance support | -
|---|---|---|---|
| {{.rancher}} | -{{.release}} | -{{.full}} | -{{.maintain}} | -