Skip to main content
                     
As-Built As-Built - Revit As-Built - AutoCAD VirtuSurv - VirtuSurv 2018 As-Built - Modeler VirtuSurv - VirtuSurv 2019          
BuildIT BuildIT - Projector BuildIT - Construction BuildIT - Metrology              
CAM2 CAM2 - SmartInspect CAM2 - 2023 CAM2 - 2018 CAM2 - Measure 10 CAM2 - Measure Q CAM2 - Measure X CAM2 - Measure 3/4 CAM2 - AnthroCAM CAM2 - 2019 CAM2 - 2020
CAM2 CAM2 - 2021                  
Cobalt 3D Imager 3D Imager - Cobalt                  
Cobalt Design Cobalt Design - M Cobalt Design - S Cobalt Design - Dual              
Computers Computers - All Computers                  
FARO Aras 360 & CAD Zone FARO CAD Zone - Fire & Insurance FARO CAD Zone - Crime & Crash FARO CAD Zone - CZ Point Cloud FARO CAD Zone - First Look Pro FARO 360 - Reality FARO 360 - HD FARO 360 - Blitz FARO 360 - Genius    
FARO Connect FARO Connect - Connect                  
FARO Zone present4D - present4D                  
FARO Zone 2D FARO Zone 2D - 2018 FARO Zone 2D - 2019 FARO Zone 2D - 2020 FARO Zone 2D - 2021 FARO Zone 2D - 2022 FARO Zone 2D - 2023        
FARO Zone 3D FARO Zone 3D - 2018 FARO Zone 3D - 2019 FARO Zone 3D - 2020 FARO Zone 3D - 2021 FARO Zone 3D - 2022 FARO Zone 3D - 2023 FARO Zone 3D - 2024      
FARO Zone 3D Advanced FARO Zone 3D Advanced - 2018 FARO Zone 3D Advanced - 2019 FARO Zone 3D Advanced - 2020 FARO Zone 3D Advanced - 2021 FARO Zone 3D Advanced - 2022          
FaroArm/ScanArm FaroArm/ScanArm - Quantum S FaroArm/ScanArm - Quantum M FaroArm/ScanArm - Quantum E FaroArm/ScanArm - Edge FaroArm/ScanArm - Fusion FaroArm/ScanArm - Prime FaroArm/ScanArm - Platinum FaroArm/ScanArm - Legacy Quantum FaroArm/ScanArm - Titanium FaroArm/ScanArm - Advantage
FaroArm/ScanArm FaroArm/ScanArm - Digital Template FaroArm/ScanArm - Gage FaroArm/ScanArm - Quantum S Max FaroArm/ScanArm - Quantum M Max FaroArm/ScanArm - Quantum E Max FaroArm/ScanArm - Gage Max        
GeoSLAM Software GeoSLAM Software - Connect GeoSLAM Software - Draw GeoSLAM Software - Hub GeoSLAM Software - Volumes            
GeoSLAM ZEB GeoSLAM ZEB - Horizon GeoSLAM ZEB - Horizon RT GeoSLAM ZEB - Revo GeoSLAM ZEB - Revo RT GeoSLAM ZEB - Go          
Hand Held Scanner 2D Hand Held Scanner - ScanPlan 3D Hand Held Scanner - Freestyle3D 3D Hand Held Scanner - Freestyle3D X 3D Hand Held Scanner - Freestyle3D Objects 3D Hand Held Scanner - Freestyle 2          
Language Quality HT MT AT NT INT - Internal Sales - Internal Resources Sales - Order and Quote Sales - Product Info Sales - Sales Readiness Sales - Training
Language Quality Sales - Product Launch Sales - Promotions CS - Quote to Invoice CS - Phone System CS - New Hire Training CS - General CS - Product Info CS - Licensing CS - Procedures General CS - Procedures Salesforce
Language Quality CS - Procedures Loaner CS - Procedures SAP                
Languages Language - English Language - Japanese Language - German Language - Chinese Language - Spanish Language - Italian Language - Portuguese Language - French Language - Korean  
Laser Projector RayTracer - RayTracer Laser Projector - Tracer M Laser Projector - Tracer SI              
Laser Radar Imaging Laser Radar - VectorRI                  
Laser Scanner 3D Laser Scanner - Focus S 3D Laser Scanner - Focus M 3D Laser Scanner - Focus3D 3D Laser Scanner - Focus3D X 3D Laser Scanner - Focus3D X HDR 3D Laser Scanner - Focus3D S 3D Laser Scanner - Photon 3D Laser Scanner - Focus S Plus 3D Laser Scanner - Swift 3D Laser Scanner - Focus Premium
Laser Scanner 3D Laser Scanner - Focus Core                  
Laser Tracker Laser Tracker - Vantage Laser Tracker - ION Laser Tracker - Vantage S Laser Tracker - Si Laser Tracker - X Laser Tracker - Xi Laser Tracker - Vantage E Laser Tracker - Vantage S6 Laser Tracker - Vantage E6  
Legacy Gage Legacy Gage - Bluetooth Legacy Gage - Plus Legacy Gage - Standard Legacy Gage - Power            
Legacy Software Legacy Software - CAM2 Gage Legacy Software - Gage Software Legacy Software - Insight              
Mobile Scanner Mobile Scanner - Orbis                  
PointSense PointSense - Basic PointSense - Pro PointSense - Building PointSense - Plant PointSense - Heritage PointSense - Revit CAD Plugin - TachyCAD Building CAD Plugin - TachyCAD Archeology CAD Plugin - TachyCAD Interior CAD Plugin - PhoToPlan Basic
PointSense CAD Plugin - PhoToPlan CAD Plugin - PhoToPlan Pro CAD Plugin - PhoToPlan Ultimate CAD Plugin - DisToPlan CAD Plugin - MonuMap CAD Plugin - hylasFM CAD Plugin - VirtuSurv      
RevEng RevEng - RevEng                  
ScanArm ScanArm - Design ScanArm 2.0 ScanArm - Design ScanArm ScanArm - Forensic ScanArm ScanArm - Design ScanArm 2.5C            
SCENE SCENE - Capture and Process SCENE - WebShare Server and 2Go SCENE - WebShare 2Go App SCENE - 2018 SCENE - 7.x SCENE - 6.x SCENE - 5.x SCENE - 4.x SCENE - LT SCENE - 2019
SCENE SCENE - 2go App SCENE - 2020 SCENE - 2021 SCENE - 2022 SCENE - 2023          
Serial FaroArm Serial FaroArm - Silver Serial FaroArm - Gold Serial FaroArm - Bronze              
Sphere FARO Sphere - Sphere                  
Visual Inspect Visual Inspect - App Visual Inspect - CAD Translator                
WebShare WebShare - Enterprise WebShare - WebShare Cloud                
FARO® Knowledge Base

Configure SSO on Webshare Enterprise

WebshareEnt-bty.png

Overview

This articles intends to document how to configure SSO for each protocol available to WebShare Enterprise.

Protocols covered in this document:

  • SSO with LDAP
  • SSO with Microsoft Azure Active Directory
  • SSO with OpenID Connect
  • SSO with SAML 2.0
  • Custom DEX Connector

SSO with LDAP

Parameters:

  • LDAPS root CA
    • Only necessary if using secure LDAP – LDAPS.
  • LDAP bind DN (required)
    • DN bind configured within the LDAP – ie: cn=admin,dc=example,dc=org.
  • LDAP bind password (required)
    • The password for the bind configured withing the LDAP.
  • LDAP user base DN (required)
    • The starting point an LDAP server uses when searching for users authentication within your Directory – ie: ou=People.
WSE-SSO-SSOwLDAP.png
Example configuration of SSO with LDAP

SSO with Microsoft Azure Active Directory

Parameters:

  • Redirect URI
    • Redirect URI to be configured in the Microsoft Azure Active Directory side, should look like “https://<your-domain/dex/callback”.
  • Directory tenant ID (required)
    • The ID of the directory tenant ID configured in Azure.
  • Application client ID (required)
    • The ID of the application created in Azure.
  • Client secret (required)
    • Secret created for the application created in Azure.
  • Allowed Groups (optional)
    • Alias of the groups within the Active Directory.
WSE-SSO-SSOwAzure.png
Example configuration of SSO with Microsoft Azure Active Directory

SSO with OpenID Connect

Parameters:

  • Redirect URI
    • Redirect URI to be configured in the OpenID issuer, should look like “https://<your-domain/dex/callback”.
  • Issuer URI (required)
    • The URL of the OpenID issuer portal.
  • Client ID (required)
    • Client ID configured within the OpenID issuer.
  • Client secret (required)
    • The secret configured for the Client ID configured within the OpenID issuer.
WSE-SSO-SSOwOpenID.png
Example configuration for SSO with OpenID Connect

SSO with SAML 2.0

Parameters:

  • Redirect URI
    • Redirect URI to be configured in the Microsoft Azure Active Directory side, should look like “https://<your-domain/dex/callback”.
  • SAML Entity Issuer URL (required)
    • The entity Issuer of WSE, should look like “https://<your-domain/dex/”.
  • Identity provider login URL (required)
    • The URL of the identity provider login page
  • Identity provider certificate (optional - recommended)
    • Certificate body – full chain
  • SAML NameID format
    • Options available:
      • Persistent
      • emailAddress
      • unspecified
      • X509SubjectName
      • WindowsDomainQualifiedName
      • Encrypted
      • Entity
      • Kerberos
      • Transient
    • Configure the one that applies for the identity provider.
  • Username attribute
    • The attribute of the user name configured in the identity provider – ie: User ID
  • Email address attribute
    • The attribute of the email address configured in the identity provider
  • Group attribute (optional)
    • Attributes of the groups
  • Group delimiter
    • Only needed when all groups are returned by the SAML 2.0 server as a single string.
  • Allowed groups
    • Optionally specify one or more comma-separated groups to restrict access to WebShare Enterprise. Only users that are restricted access to WebShare Enterprise.
    • Only users that are a member of at least one of those groups will be allowed to log in.
WSE-SSO-SSOwSAML.png
Example configuration for SSO with SAML 2.0

Custom DEX Connector

Parameters:

  • Redirect URI
    • Redirect URI to be configured in the Microsoft Azure Active Directory side, should look like “https://<your-domain/dex/callback”.

       
  • Text box to fill the custom DEX configuration

WSE-SSO-CommandLineParameters.png
Custom Dex Connector - Microsoft

WSE-SSO-CustomDEXConnector.png
Example configuration of SSO with Custom DEX Connector