asp.net pdf reader : Adjust size of pdf software SDK dll winforms wpf .net web forms j-sa-sslvpn-7.1-adminguide31-part750

MaximumCacheTime—Youcaneliminatetheoverheadofgeneratingan
authorizationdecisioneachtimetheuserrequestthesameURLbyindicatingthat
SecureAccessmustcachetheaccessmanagementsystem’sauthorization
responses.EntertheamountoftimeSecureAccessshouldcachetheresponses
(inseconds).
IgnoreQueryData—Bydefault,whenauserrequestsaresource,SecureAccess
sendstheentireURLforthatresource(includingthequeryparameter)totheSAML
WebserviceandcachestheURL.YoucanspecifythatSecureAccessshouldremove
thequerystringfromtheURLbeforerequestingauthorizationorcachingthe
authorizationresponse.
13.
ClickSaveChanges.
14.
OntheSAMLAccessControlPoliciespage,orderthepoliciesaccordingtohowyou
wantSecureAccesstoevaluatethem.KeepinmindthatonceSecureAccessmatches
theresourcerequestedbytheusertoaresourceinapolicy’s(oradetailedrule’s)
Resourcelist,itperformsthespecifiedactionandstopsprocessingpolicies.
Related
Documentation
AboutUsingCertificatesonSecureAccessServiceonpage726
WritingaWebProxyResourcePolicyonpage467
CreatingaTrustRelationshipBetweenSAML-EnabledSystems
InordertoensurethatSAML-enabledsystemsareonlypassinginformationbetween
trustedsources,youmustcreateatrustrelationshipbetweentheapplicationsthatare
sendingandreceivinginformation.
ConfiguringTrustedApplicationURLs
Inatrustrelationship,youmustprovidetheSAML-enabledsystemswiththeURLsthey
needtocontacteachother.Insometransactions,onlythesystemthatinitiatesthe
transaction(SecureAccess)needstoknowtheURLoftheothersystem.(SecureAccess
usestheURLtoinitiatethetransaction.)Inothertransactions(SSOtransactionsusing
artifactprofiles),youneedtoconfigureeachsystemwiththeURLoftheother.
ListedbelowarethedifferenttransactiontypesandtheURLsyoumustconfigurefor
each:
SSOtransactions:Artifactprofile—OnSecureAccess,youmustentertheURLofthe
assertionconsumerservice.Forexample:https://hostname/acs
YoumustalsoenterthefollowingURLforSecureAccessontheassertionconsumer
service:https://<SecureAccessHostname>/dana-ws/saml.ws
SSOtransactions:POSTprofile—OnSecureAccess,youmustentertheURLofthe
assertionconsumerservice.Forexample:https://hostname/acs
Accesscontroltransactions—OnSecureAccess,youmustentertheURLoftheSAML
Webservice.Forexample:https://hostname/ws
275
Copyright©2012,JuniperNetworks,Inc.
Chapter11:SingleSign-On
Adjust size of pdf - Compress reduce PDF size in C#.net, ASP.NET, MVC, Ajax, WinForms, WPF
C# Code & .NET API to Compress & Decompress PDF Document
best way to compress pdf file; can pdf files be compressed
Adjust size of pdf - VB.NET PDF File Compress Library: Compress reduce PDF size in vb.net, ASP.NET, MVC, Ajax, WinForms, WPF
VB.NET PDF Document Compression and Decompression Control SDK
change paper size pdf; change font size pdf document
ConfiguringanIssuer
Beforeacceptingastatementfromanothersystem,aSAML-enabledentitymusttrust
theissuerofthestatement.Youcancontrolwhichissuersasystemtrustsbyspecifying
theuniquestringsofthetrustedissuersduringthesystem’sconfiguration.(Whensending
astatement,anissueridentifiesitselfbyincludingitsuniquestringinthestatement.
SAML-enabledapplicationsgenerallyusehostnamestoidentifyissuers,buttheSAML
standardallowsapplicationstouseanystring.)Ifyoudonotconfigureasystemto
recognizeanissuer’suniquestring,thesystemwillnotacceptthatissuer’sstatements.
Listedbelowarethedifferenttransactiontypesandtheissuersyoumustconfigurefor
each:
SSOtransactions—YoumustspecifyauniquestringonSecureAccess(typicallyits
hostname)thatitcanusetoidentifyitselfandthenconfiguretheaccessmanagement
systemtorecognizethatstring.
Accesscontroltransactions—Youmustspecifyauniquestringontheaccess
managementsystem(typicallyitshostname)thatitcanusetoidentifyitselfandthen
configureSecureAccesstorecognizethatstring.
ConfiguringCertificates
WithinSSLtransactions,theservermustpresentacertificatetotheclient,andthenthe
clientmustverify(atminimum)thatittruststhecertificateauthoritywhoissuedthe
server’scertificatebeforeacceptingtheinformation.YoucanconfigureallofSecure
Access’sSAMLtransactionstouseSSL(HTTPS).
ConfiguringSSOTransactions:ArtifactProfile
Artifactprofiletransactionsinvolvenumerouscommunicationsbackandforthbetween
SecureAccessandaccessmanagementsystem.Themethodsyouusetopassdataand
authenticatethetwosystemsaffectwhichcertificatesyoumustinstallandconfigure.
Listedbelowarethedifferentartifactprofileconfigurationoptionsthatrequirespecial
certificateconfigurations:
Allartifactprofiletransactions—Regardlessofyourartifactprofileconfiguration,you
mustinstallthecertificateoftheCAthatsignedtheSecureAccessWebserver’s
certificateontheaccessmanagementsystem.(SecureAccessrequirestheaccess
managementsystemtouseanSSLconnectionwhenrequestinganauthentication
statement.InanSSLconnection,theinitiatormusttrustthesystemtowhichitis
connecting.ByinstallingtheCAcertificateontheaccessmanagementsystem,you
ensurethattheaccessmanagementsystemwilltrusttheCAthatissuedSecureAccess’
certificate.)
SendingartifactsoveranSSLconnection(HTTPSGETrequests)—Ifyouchooseto
sendartifactstotheaccessmanagementsystemusinganSSLconnection,youmust
installtheaccessmanagementsystem’srootCAcertificateonSecureAccess.(Inan
SSLconnection,theinitiatormusttrustthesystemtowhichitisconnecting.Byinstalling
theaccessmanagementsystem’sCAcertificateonSecureAccess,youensurethat
SecureAccesswilltrusttheCAthatissuedtheaccessmanagementsystem’s
Copyright©2012,JuniperNetworks,Inc.
276
JunosPulseSecureAccessServiceAdministrationGuide
VB.NET Image: How to Draw Annotation on Doc Images with Image SDK
multi-page TIFF, Microsoft Office Word and PDF file that, you are also able to adjust various image control the annotation shapes, the outline size (width and
pdf files optimized; change font size pdf form reader
C# Image: Zoom Image and Document Page in C#.NET Web Viewer
jpeg), gif, bmp (bitmap), tiff / multi-page tiff, PDF, etc. APIs for Visual C# .NET developers to adjust the image & document page viewing size with this
advanced pdf compressor; adjust pdf size
certificate.)YoucaninstalltherootCAfromtheSystem>Configuration>Certificates
>TrustedClientCAspageintheadminconsole.Ifyoudonotwanttosendartifacts
overanSSLconnection,youdonotneedtoinstallanyadditionalcertificates.
ToenableSSL-basedcommunicationsfromSecureAccesstotheaccessmanagement
system,enteraURLthatbeginswithHTTPSintheSAMLAssertionConsumerService
URLfieldduringSecureAccessconfiguration.YoumayalsoneedtoenableSSLon
theaccessmanagementsystem.
Transactionsusingcertificateauthentication—Ifyouchoosetoauthenticatetheaccess
managementsystemusingacertificate,youmust:
Installtheaccessmanagementsystem’srootCAcertificateonSecureAccess.You
caninstalltherootCAfromtheSystem>Configuration>Certificates>Trusted
ClientCAspageintheadminconsole.
SpecifywhichcertificatevaluesSecureAccessshouldusetovalidatetheaccess
managementsystem.Youmustusevaluesthatmatchthevaluescontainedinthe
accessmanagementserver’scertificate.
Ifyoudonotchoosetoauthenticatetheaccessmanagementsystem,orifyouchoose
touseusername/passwordauthentication,youdonotneedtoinstallanyadditional
certificates.
ConfiguringSSOTransactions:POSTProfile
InaPOSTprofiletransaction,SecureAccesssendssignedauthenticationstatements
totheaccessmanagementsystem.Generally,itsendsthemoveranSSLconnection
(recommended),butinsomeconfigurations,SecureAccessmaysendstatementsvia
astandardHTTPconnection.ListedbelowarethedifferentPOSTprofileconfiguration
optionsthatrequirespecialcertificateconfigurations:
AllPOSTprofiletransactions—RegardlessofyourPOSTprofileconfiguration,youmust
specifywhichcertificateSecureAccessshouldusetosignitsstatements.Youcan
chooseacertificateintheUsers>ResourcePolicies>Web>SSOSAML>[Policy]>
Generalpageintheadminconsole.Then,youmustinstallSecureAccess’sdevice
certificateontheaccessmanagementsystem.YoucandownloadSecureAccess’s
certificatefromtheSystem>Configuration>Certificates>DeviceCertificates>
[Certificate]>CertificateDetailspage.
SendingPOSTdataoveranSSLconnection(HTTPS)—Ifyouchoosetosend
statementstotheaccessmanagementsystemusinganSSLconnection,youmust
installtheaccessmanagementsystem’srootCAcertificateonSecureAccess.(Inan
SSLconnection,theinitiatormusttrustthesystemtowhichitisconnecting.Byinstalling
theaccessmanagementsystem’scertificateonSecureAccess,youensurethatSecure
AccesswilltrusttheCAthatissuedtheaccessmanagementsystem’scertificate.)You
caninstalltherootCAfromtheSystem>Configuration>Certificates>TrustedClient
CAspageintheadminconsole.IfyoudonotwanttopoststatementsoveranSSL
connection,youdonotneedtoinstallanyadditionalcertificates.
ToenableSSL-basedcommunicationsfromSecureAccesstotheaccessmanagement
system,enteraURLthatbeginswithHTTPSintheSAMLAssertionConsumerService
277
Copyright©2012,JuniperNetworks,Inc.
Chapter11:SingleSign-On
VB.NET Image: VB.NET Code to Create Watermark on Images in .NET
font type "Times New Roman", size "16", and style "Bold"), and then adjust brush color provide powerful & profession imaging controls, PDF document, tiff
optimize scanned pdf; best way to compress pdf
C# PowerPoint: How to Set PowerPoint Rendering Parameters in C#
this SDK to render PowerPoint (2007 or above) slide into PDF document or Generally, you are allowed to set image resolution, image size, batch conversion and
adjusting page size in pdf; change font size on pdf text box
URLfieldduringSecureAccessconfiguration.YoumayalsoneedtoenableSSLonthe
accessmanagementsystem.
ConfiguringAccessControlTransactions
Inanaccesscontroltransaction,SecureAccesspostsanauthorizationdecisionquery
totheaccessmanagementsystem.Toensurethattheaccessmanagementsystem
respondstothequery,youmustdeterminewhichcertificateoptionsarerequiredbyyour
configuration.Listedbelowarethedifferentaccesscontrolconfigurationoptionsthat
requirespecialcertificateconfigurations:
SendingauthorizationdataoveranSSLconnection—Ifyouchoosetoconnecttothe
accessmanagementsystemusinganSSLconnection,youmustinstalltheaccess
managementsystem’srootCAonSecureAccess.(InanSSLconnection,theinitiator
musttrustthesystemtowhichitisconnecting.Byinstallingtheaccessmanagement
system’scertificateonSecureAccess,youensurethatSecureAccesswilltrusttheCA
thatissuedtheaccessmanagementsystem’scertificate.)YoucaninstalltherootCA
fromtheSystem>Configuration>Certificates>TrustedClientCAspageintheadmin
console.
Transactionsusingcertificateauthentication—Ifyouchoosetousecertificate
authentication,youmustconfiguretheaccessmanagementsystemtotrusttheCA
thatissuedSecureAccess’certificate.Optionally,youmayalsochoosetoacceptthe
certificatebasedonthefollowingadditionaloptions:
UploadSecureAccesscertificate’spublickeytotheaccessmanagementsystem.
ValidateSecureAccessusingspecificcertificateattributes.
TheseoptionsrequirethatyouspecifywhichcertificateSecureAccessshouldpassto
theaccessmanagementsystem.YoucanchooseacertificateintheUsers>Resource
Policies>Web>SAMLACL>[Policy]>Generalpageintheadminconsole.
TodeterminehowtoconfigureyouraccessmanagementsystemtovalidateSecure
Access’certificate,seeyouraccessmanagementsystem’sdocumentation.Ifyour
accessmanagementsystemdoesnotrequirecertificateauthentication,orifituses
username/passwordauthentication,youdonotneedtoconfigureSecureAccessto
passtheaccessmanagementserveracertificate.Ifyoudonotspecifyatrustmethod,
youraccessmanagementsystemmayacceptauthorizationrequestsfromanysystem.
ConfiguringUserIdentity
Inatrustrelationship,thetwoentitiesmustagreeonawaytoidentifyusers.Youmay
choosetoshareausernameacrosssystems,selectanLDAPorcertificateuserattribute
toshareacrosssystems,orhard-codeauserID.(Forexample,youmaychoosetoset
theSubjectNamefieldto“guest”toeasilyallowaccessacrosssystems.)
Toensurethatthetwosystemsarepassingcommoninformationaboutusers,youmust
specifywhichinformationSecureAccessshouldpassusingoptionsintheUserIdentity
sectionoftheUsers>ResourcePolicies>Web>SAMLSSO>[Policy]>Generalpage
andtheUsers>ResourcePolicies>Web>SAMLACL>[Policy]>Generalpageofthe
adminconsole.Chooseausernameorattributethattheaccessmanagementsystem
willrecognize.
Copyright©2012,JuniperNetworks,Inc.
278
JunosPulseSecureAccessServiceAdministrationGuide
C# PDF: Use C# APIs to Control Fully on PDF Rendering Process
PDF document PDFDocument doc = new PDFDocument(@"c:\sample.pdf"); // compute zoom new Rectangle(0, 0, originalWidth, originalHeight), size); // adjust with a
300 dpi pdf file size; adjust size of pdf in preview
VB.NET Excel: VB Methods to Set and Customize Excel Rendering
on the fixed image size ration that the size is limited by Adjust Image Scaling Factor. supports converting Excel to other document files, like PDF with online
reader compress pdf; change font size pdf form
Related
Documentation
UsingaTrustedClientCAonpage735
ConfiguringSAMLonpage262
ConfiguringSAMLSSOProfilesonpage265
ConfiguringGeneralRoleOptionsonpage97
279
Copyright©2012,JuniperNetworks,Inc.
Chapter11:SingleSign-On
C# PDF Convert: How to Convert Word, Excel, PowerPoint, Tiff
Support rendering image to a PDF document page, no change for image size. Able to adjust and customize image resolution to meet various C# PDF conversion
pdf text box font size; pdf compression
C# Word: How to Draw Text, Line & Image in C#.NET Word Project
copy the sample codes below to adjust text properties such as image color, picture size, location of powerful & profession imaging controls, PDF document, image
change font size pdf; change page size pdf acrobat
Copyright©2012,JuniperNetworks,Inc.
280
JunosPulseSecureAccessServiceAdministrationGuide
C# Word: Set Rendering Options with C# Word Document Rendering
& raster and vector images, such as PDF, tiff, png rendering application still enables users to adjust and set developers can choose a target size or resolution
pdf page size; pdf edit text size
VB.NET Image: Image Resizer Control SDK to Resize Picture & Photo
VB.NET Code for Adjusting Image Size. In order to resizer control add-on, can I adjust the sizes of powerful & profession imaging controls, PDF document, image
adjust size of pdf file; pdf custom paper size
CHAPTER12
SynchronizingUserRecords
AboutUserRecordSynchronizationonpage281
EnablingUserRecordSynchronizationonpage283
ConfiguringtheUserRecordSynchronizationAuthenticationServeronpage284
ConfiguringtheUserRecordSynchronizationServeronpage284
ConfiguringtheUserRecordSynchronizationClientonpage285
ConfiguringtheUserRecordSynchronizationDatabaseonpage286
AboutUserRecordSynchronization
Theuserrecordsynchronizationfeaturepromotesamoreconsistentuserexperienceby
allowinguserstoretaintheirbookmarksandindividualpreferencesregardlessofwhich
SecureAccesstheyloginto.
Userrecordsynchronizationreliesonclient-serverpairings.TheclientistheSecureAccess
appliancethatuserslogintostarttheirremoteaccess.Eachclientisassociatedwith
oneprimaryserverandonebackupservertostoreuserrecorddata.Clientscanbe
individualappliancesoranodewithinacluster.
AserverinthisinstanceistheSecureAccessappliancethatstorestheuserdatarecords.
Eachservercanbeconfiguredtoreplicateitsuserrecorddatatooneormorepeerservers.
Serversareidentifiedbyauser-definedlogicalname.Thesamelogicalnamecanbe
assignedtomorethanoneauthenticationservertoletyouassociateauthentication
serversofdifferenttypestothesameuser.Forexample,SA1isanACEauthentication
serverwithuser1whocreatesabookmarktowww.juniper.net.SA2isanActiveDirectory
authenticationserverwiththesameuser1.Forthewww.juniper.netbookmarktobe
transferredfromSA1/ACE/user1toSA2/AD/user1youwouldassignthelogicalname
“Logical1”toboththeACEserveronSA1andtheActiveDirectoryserveronSA2.
NOTE: ClusterVIPscannotbeusedastheIPforsynchronizingbetween
clientsandpeersservers.
Aslongasthelogicalnameisthesame,theauthenticationserverscanbedifferenttypes
anddifferentservernamesandstillbeassociatedwithacommonuser.Theusername
mustbethesameforuserrecorddatatobesynchronizedacrosstheservers.Thelogical
281
Copyright©2012,JuniperNetworks,Inc.
authenticationserver(LAS)andusernamecombinationiswhatuniquelyidentifiesauser
record.
Thefollowinguserrecordsaresynchronizedbetweentheclientandserver:
Bookmarks
Web
File
TerminalServices
JSAM
Preferences
Persistentcookies
Cachedpasswords
Usersessiondataisnotsynchronized.Persistentcookies,ifchanged,aresynchronized
whentheusersessionterminates.Allothermodificationstotheuserrecordsare
synchronizedimmediately.Userrecordsarestoredincacheontheclientnodepriorto
beingpushedtotheservers.
Whenauserlogsintoaclient,theirdataispulledfromtheassociatedserver.Thepull
isperformedinthebackgroundanddoesnotdelaytheloginprocess.Usersusingbrowsers
thatdonotsupportJavaScriptmustmanuallyrefreshtheindexpageforupdated
bookmarksandpreferencestoappear.ForbrowsersthatsupportJavaScript,usersmay
seeaspinningprogressindicatorandtheirhomepagewillrefreshautomaticallywith
updatedbookmarksandpreferences.
ClientsandserversneednotbeinstalledwiththesameSecureAccesssoftwareversion
aslongastheyareusingversion6.5orlater.
NOTE: Userrecordsynchronizationusesport17425.Thisportnumberisnot
configurable.Ifyouaredeployingacrossafirewall,configureyourfirewallto
allowtrafficonthisport.
Tosetupuserrecordsynchronization,youperformthefollowingtasks:
1.
Enableuserrecordsynchronizationforeachparticipatingclientandserver,identify
whichonesaretheclientandwhichonesaretheserverandassignanodenameto
eachclientandserver.
2.
Createasharedsecretwhichisusedtoauthenticatetheclientwiththeserverand
theservertoitspeerservers.
3.
Oneachserver,definewhichclientsandpeersareallowedtocommunicatewiththe
server.
4.
Oneachclient,definetheserversthathandlerecordsforeachLASserver.
Copyright©2012,JuniperNetworks,Inc.
282
JunosPulseSecureAccessServiceAdministrationGuide
Whenenablingthisfeature,youhaveseveraloptionstoinitializetheuserrecorddatabase.
Youcan:
populatethedatabaseusinguserrecordslocatedinthecacheoftheclientsystems.
populatethedatabaseuseuserrecordslocatedinthecacheoftheserversystems.
don’tpre-populatethedatabasebutpopulateitasusersloginandoutoftheclient
system.
Ifyouchoosethelastoption,usersmaynotbeabletoviewtheirsavedbookmarksand
preferencesuntilthenexttimetheylogin,dependingonwhichclienttheyloginto.
NOTE: UserrecordsmaynotsynchronizeifthetimeclocksontheSecure
Accessappliancesarenotinsync.Werecommendthatyouusethesame
NTPserverforeachnodeparticipatinginuserrecordsynchronizationtokeep
SecureAccesstimesaccuratelyadjusted.
Related
Documentation
EnablingUserRecordSynchronizationonpage283
ConfiguringtheUserRecordSynchronizationAuthenticationServeronpage284
ConfiguringtheUserRecordSynchronizationServeronpage284
ConfiguringtheUserRecordSynchronizationClientonpage285
ConfiguringtheUserRecordSynchronizationDatabaseonpage286
EnablingUserRecordSynchronization
Thefirststepinenablinguserrecordsynchronizingistodefinethenodenameandthe
sharedsecretusedtoauthenticatebetweentheclientsandtheservers:
1.
SelectSystem>Configuration>UserRecordSynchronization>General.
2.
SelecttheEnableUserRecordSynchronizationcheckbox.
3.
Enterauniquenodename.Thisnameisusedwhenassociatingaclientwithaserver
andisdifferentfromthelogicalnameassignedtoaserver.Thisnodenameisalso
notthesameastheclusternodename.
4.
Enterthesharedsecretandconfirmit.
Thesharedsecretisthepasswordusedtoauthenticatetheclientwithitsserversand
theprimaryserverwithitspeerservers.Usethesamesharedsecretforallclientsand
serversparticipatinginuserrecordsynchronization.
5.
Selectwhetherthisnodeisclientonlyorifthisnodeactsasbothaclientandserver.
6.
ClickSaveChanges.
283
Copyright©2012,JuniperNetworks,Inc.
Chapter12:SynchronizingUserRecords
NOTE: Ifyouneedtomakeanychangesinthiswindowatalatertime,you
mustdeselecttheEnableUserRecordSynchronizationcheckboxandclick
SaveChanges.Makeyouredits,selecttheEnableUserRecordSynchronization
checkboxandsaveyourchanges.
Onceyouenteranameandsharedsecret,youcannotclearthesefields.
Related
Documentation
ConfiguringtheUserRecordSynchronizationAuthenticationServeronpage284
ConfiguringtheUserRecordSynchronizationServeronpage284
ConfiguringtheUserRecordSynchronizationClientonpage285
ConfiguringtheUserRecordSynchronizationDatabaseonpage286
ConfiguringtheUserRecordSynchronizationAuthenticationServer
Tosetuptheauthenticationserveryoumustdefineit’slogicalname:
1.
SelectAuthentication>AuthServers.
2.
ClickthenameoftheauthenticationserveryouwantassignaLASname.
ByassigningtheauthenticationserveraLASname,allusersthatauthenticateusing
theauthenticationserverareassociatedwiththisLAS.Inthisinstance,wearereferring
totheclientnodes,nottheuserrecordsynchronizationservernodes.
3.
SelecttheUserRecordSynchronizationcheckbox.
4.
Enteralogicalnametoidentifythisserver.
Thisallowsyoutoshareuserrecorddataacrossauthenticationserversondifferent
SecureAccessgateways.ByassigningaLASnametoanauthenticationserver,you
areimplicitlyassigningittoallusersthatauthenticatewiththatauthserver.The
combinationoftheuser’sloginnameandtheirLASnameuniquelyidentifiestheuser's
userrecordacrossalluserrecordsynchronizationservers.
5.
ClickSaveChanges.
Related
Documentation
ConfiguringtheUserRecordSynchronizationClientonpage285
ConfiguringtheUserRecordSynchronizationDatabaseonpage286
ConfiguringtheUserRecordSynchronizationServer
Tosetuptheuserrecordsynchronizationserveryoumustdefineit’speernodes(optional)
andtheclientsthatcanaccessthisserver.
1.
SelectSystem>Configuration>UserRecordSynchronization>ThisServer.
Copyright©2012,JuniperNetworks,Inc.
284
JunosPulseSecureAccessServiceAdministrationGuide
Documents you may be interested
Documents you may be interested