

If considering SSO for your organization, you must carefully read the PaperCut SSO documentation, weigh the pros and cons and plan your implementation. After session login, all URL parameters are wiped. In particular, deep linking is not supported. We’ve also implemented the feature in way that should minimise the chance of any Cross-Site Request Forgery (CSRF) attacks. The new PaperCut SSO implementation offers moreĬonfigurability and control, so you can selectively offer web SSO for access to the admin or user interfaces. If these cannot be found, we recommend you contact your local IT Administrator or help-desk staff who will be able to assist you further. Such as swipe cards for login has prompted us to re-implement this feature. More recently, demand fromĬorporate customers and the increased use of two factor authentication systems To prevent this issue, single sign-on was removed from the product for a number of years. The same can be said for admin level users, although with more severe consequences! The problem was that students would momentarily leave their desktop and another student could jump in, open the browser, and transfer funds out of their account or gain access to other sensitive data or functions. The user web interface exposes sensitive information and features such as funds transfer. PaperCut first implemented single sign-on several years ago, however, this caused a number of problems in an education environment. It may be that one of these two solutions is ideal for your site, but there are security issues to consider. With these solutions, users can access the PaperCut web interface simply by clicking on the Details… link in the client or bringing up the required URL in a browser.
#PAPERCUT NG LOGIN WINDOWS#
NTLM/IWA, WebAuth, Shibboleth)?Īs of release 13.4, PaperCut offers two single sign-on (SSO) methods for web access, using Integrated Windows Authentication (NTLM/IWA) and WebAuth. Q Why do users have to log in when accessing the end-user web pages? Can I implement single sign-on (e.g. Particularly, if you’re looking for help logging in then check out our How do I log in? article However there are also other ways that your users can log in with their ‘email address’ - depending on which sync source you’re using (e.g.If you’re a Student or end-user looking for help logging in, we have a number of articles in the End User Help category which might help! It is also useful in cases where a user has forgotten their username. In some organizations users don’t even know their username (sAMAccountName) this would allow them to log in using their email address.
#PAPERCUT NG LOGIN PASSWORD#
Their password will be their domain password. As long as this is true, your users can log in to PaperCut using their email address as the username. If the AD account has an email address in it, this will be synchronised with PaperCut). The only requirement is that the user has an email address specified in their PaperCut User Profile (commonly this is achieved via the synchronisation with your Active Directory. user, release station, MFDs, web release, mobile client), and this works out-of-the-box - meaning there is no additional configuration required to enable this! PaperCut allows users to use their email address as an alternative method to log in (i.e. users to make the most of PaperCut NG/MF without requiring intervention from administrators. It’s a common expectation now that users want to log in to their systems using their email address. Using your email address to log into the PaperCut interfaces Log in for access to marketing materials, training & certification, manuals, and tools to promote PaperCut like a pro. If you’re looking for help logging in then check out our How do I log in? article If you’re a Student or end-user looking for help logging in, we have a number of articles in the End User Help category which might help!
