Pragma Systems Technical Forum

Client Suite SmartCard/CAC Authentication

https://forums.pragmasys.com/Topic485.aspx

By whiteb - 4/11/2019 11:00:57 AM

I am evaluating the Pragma Fotress CL and FX client software packages for connecting from a Windows desktop to Linux servers. I have configured the CL software to authenticate with SmartCard using the following configuration:
1. Set "Site name", "Host address" and "Port" for remote sever.
2. Under "Authentication" settings, record username in "UserID" field and click "SmartCard/CAC" radio button. Next to "SmartCard/CAC" radio button, click the check box labeled "Key Only"
3. Click "Apply", then "Connect"
When I click "Connect", after setting up the connection, it prompts me for the PIN to my CAC and then logs me in.

My question is how do I setup this same configuration within the FX client software? I have tried the following, but to no avail:
1. Set "Site name", "Host address" and "Port" for remote sever.
2. Under "Authentication" settings, set "Certificate Name Mapping" to "User Specified", record username in "UserID" field and click "SmartCard/CAC" radio button.
3. Click "Apply", then "Connect"

A connection seems to have been made, because it displays the servers SSH banner. But then I see a pop-up from Pragma FortressFX that reads "Authentication/Connection failed. Please check all connection settings". I am confused as to why FortressCL has an option under "SmartCard/CAC" for "Key Only", but FortressFX does not have this same option.

Any help is appreciated.

- Brock
By whiteb - 4/22/2019 10:37:19 AM

Bump.

Anyone?

By Technical Support Group (TSG) - 4/23/2019 1:25:23 PM

whiteb - 4/22/2019 4:37:19 PM

Bump.

Anyone?


Brock,
Sorry for the delay. I forwarded your request to our developer and he just got back to me that he can implement the "Key only" feature in FX. I'll get back to you when you can download the new feature.
By whiteb - 4/23/2019 1:52:17 PM

@Technical Support Group (TSG)


Thank you for the reply, I much appreciate it. I didn't mean to be rude with my bump, I was hoping some other members of the community would be able to chime in on my issue.

I look forward to hearing back from you and your developer.

- Brock

By Technical Support Group (TSG) - 4/23/2019 4:22:52 PM

whiteb - 4/23/2019 7:52:17 PM

@Technical Support Group (TSG)


Thank you for the reply, I much appreciate it. I didn't mean to be rude with my bump, I was hoping some other members of the community would be able to chime in on my issue.

I look forward to hearing back from you and your developer.

- Brock


You were not rude at all. I apologize for not getting back to you sooner.