3.1.1. Procedure – Installing the Authentication Agent on Microsoft Windows

Purpose: 

The Authentication Agent (AA) installer is located in the \platforms\windows\ folder of the PNS CD-ROM, its latest version is also available from the BalaSys website.

The installer is available as Windows Installer Package (.msi)

Steps: 

  1. Place the PNS CD-ROM into the CD drive and start the authentication-agent-<version>.msi file located in the \platforms\windows\ folder.

    Warning

    Administrator privileges are required to install the application.

  2. Check I accept the terms in the License Agreement to accept the End-User License Agreement, which is displayed after the installer starts. Click Next to continue installation process. To cancel the installation at any time during the process, click Cancel.

    Accepting the EULA

    Figure 3.1. Accepting the EULA

  3. Select the destination folder for the application and click Next to continue. The default folder is C:\Program Files\auth-agent.

    Selecting the destination folder

    Figure 3.2. Selecting the destination folder

  4. Optional step: Click ... button, select the CA certificate to import, then click Open to import the CA certificate.

    Note

    For authentication purposes, when PNS communicates with AA, AA expects TLS-encrypted communication. For details, see section Section 4.1.1, Registry entries on Microsoft Windows platforms and section Section 4.1, Configuring Authentication Agent on Microsoft Windows platforms.

    If the Authentication Agent and PNS communicate through a TLS-encrypted channel (recommended), the certificate of the Certificate Authority (CA) signing the certificates of the PNS firewalls can be imported to the Authentication Agent Multiplexer's certificate store.

    Note

    The CA certificate has to be in DER or PEM format. (with typical file extensions of *.der, *.pem, *.crt, *.cert) It is not necessary to import the certificate during the installation, it can also be done later. For details about encrypting the agent-PNS authentication, see Section 4.1.3, Configuring TLS connections on Microsoft Windows platforms.

    Importing the CA certificate

    Figure 3.3. Importing the CA certificate

  5. Click Install to start the installation process. The installer copies the required files and registers the service called Authentication Agent Multiplexer, which is started after the registration.

    Ready to start installation

    Figure 3.4. Ready to start installation

  6. After the installer has completed the above steps, click Finish.

  7. The Authentication Agent (AA) logo is displayed on the system tray, indicating that the application is running. It is also started automatically after each Windows startup.