Authentication and Active Directory Implementation GuideΒΆ 1. Introduction 1.1. Welcome 1.2. Customer Support Information 1.2.1. Identifying NexLog DX-Series Model and Version 2. Authentication Modes 2.1. Choosing the Right Mode 2.2. Setting the Authentication Mode 3. Local Authentication 4. SMB Authentication 4.1. How It Works 4.2. Prerequisites 4.3. Create the File Share 4.4. Configure SMB Authentication 4.5. Create SMB Users 4.5.1. SMB Usernames 4.5.2. SMB Passwords 5. LDAP Authentication 5.1. How It Works 5.2. Prerequisites 5.3. Create the LDAP Bind Account 5.4. Configure LDAP Authentication 5.4.1. LDAP Configuration 5.4.2. LDAPS Configuration 6. Active Directory Authentication 6.1. How It Works 6.2. Prerequisites 6.3. Configure Time Sync 6.4. Configure Hostname 6.5. Configure TLS 6.6. Configure AD Authentication 6.6.1. Create AD User 6.6.2. Set Service Principals 6.6.3. Create Keytab 6.6.4. Deploy AD Configuration 6.6.5. Joining the Domain 6.6.6. Single Sign-On 7. SAML Authentication 7.1. How It Works 7.2. Prerequisites & Considerations 7.3. Identity Provider Implementation Guides 7.3.1. ADFS Configuration 7.3.2. Duo Configuration 7.3.3. Entra ID Configuration 7.3.4. Okta Configuration 7.4. Configuring the recorder 7.4.1. Recorder SAML Configuration 8. Users and Groups 8.1. Local Users with LDAP 8.2. Domain Users with LDAP Group Mapping 8.2.1. Enable LDAP Group Mapping 8.2.2. Export Recorder Groups to LDAP 8.3. Domain Users without LDAP Group Mapping 8.4. Passwords 9. NexLog Access Bridge 9.1. NAB with Active Directory 9.1.1. NAB with Single Sign-On 9.2. NAB with SMB 9.3. NAB Base Database Exemption A. Troubleshooting B. AD Powershell Script