Active Directory Authentication

Active Directory Authentication


Role Required: SDAdmin

You can authenticate user login to AssetExplorer via Active Directory. AD-based authentication can be configured in two ways:

Log in using AD Credentials

Enable user login for AssetExplorer.
  1. Hover over Active Directory Authentication fields and click Edit.
  2. Select Enable Active Directory Authentication.
  3. Click Save.


In the application login screen, the users can specify their system/AD login credentials and select the Domain to log in to AssetExplorer. They can also bypass AD authentication during login by selecting Local Authentication from the Domain drop-down and specifying their local authentication credentials.
If LDAP SSL is enabled for a domain in AD import page, AD authentication will also occur through LDAP SSL. 
You can enable SSO for AD users to instantly access AssetExplorer without providing any login credentials from SAML by configuring ADFS as the IdP.
You can also configure other identity providers such as Okta or OneLogin to enable SSO. 
Ensure that the AD users are imported to the IdP before configuring SSO.

    • Related Articles

    • LDAP Authentication

      Role Required: SDAdmin You can allow users to log in to AssetExplorer using their LDAP credentials. After the users are imported, hover over the LDAP authentication check box. Click Edit. Select the Enable LDAP Authentication checkbox. Click Save. ...
    • Import Users from Active Directory

      Role Required: SDAdmin The integration of Active Directory (AD) with AssetExplorer enables you to import user information from the Active Directory server into AssetExplorer. You can import users from any of the domains and their subsequent ...
    • Sync Deleted Users from Active Directory

      Role Required: SDAdmin This option lets you sync the deleted users from Active Directory into AssetExplorer. Syncing of deleted users happens after a manual import. After the sync is completed, a list of deleted users is displayed. Based on the type ...
    • Set Local Authentication Password for Imported Users

      Role Required: SDAdmin You can set a default local authentication password for users imported through AD. Users can change this password after the first login. To set a local authentication password from the Active Directory configuration page, Hover ...
    • Add a New Domain

      Role Required: SDAdmin An agent is required for scanning Windows machines. To add a new domain in AssetExplorer, Go to Admin > Discovery > Windows Domain Scan or click the scan button in the header pane and navigate to Windows Domain Scan. Click Add ...