# Hideez Enterprise Server Setting

{% hint style="info" %}
To ensure proper functionality of the Hideez Enterprise Server (HES), you need to specify some basic settings. Follow the instructions below to configure the necessary parameters.
{% endhint %}

***

### **Accessing Parameters**

* Navigate to **Settings → Parameters** to manage your application settings.

<figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2F2YHYU62iCUN94ncuZ2sb%2Fimage.png?alt=media&#x26;token=4b3cc08a-f8ef-4376-8f71-1ef12f623e77" alt="" width="563"><figcaption></figcaption></figure>

***

### **1.  Application.**&#x20;

#### **Domain Configuration**

The domain is essential for various processes such as email, FIDO2 authorization, SAML, OIDC protocols, and product license verification.

<div><figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FOiC7UTTeX9bqmWEh0wNc%2Fimage%20(1).png?alt=media&#x26;token=9b1aac0c-5ffc-4324-bbc0-b321013a1082" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FxTq80YGkUv9r9uqr6l7P%2FScreenshot_9.png?alt=media&#x26;token=dcc559b6-1f57-4015-823b-408040e9b2b8" alt=""><figcaption></figcaption></figure></div>

***

### **2. Mail Configuration**

Administrators can configure email credentials to send service notifications to users, including invitations for new employees, password resets, and activation codes.

* **Expand the Mail Section**:
  * Click **Configure** to set or change email credentials.
* **Fill in the Email Credentials**:

  * **Host**: Email server address (e.g., for Gmail: `smtp.gmail.com` for SMTP).
  * **Port**: Numeric code for the specific network port.
  * **Enable SSL**: Select this option to use SSL for secure connections.
  * **Email**: The email address used for sending messages.
  * **Password**: The password associated with the email account for authentication.

<div><figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2F4QeKglFndW3BDsaN7eAG%2FScreenshot_9.png?alt=media&#x26;token=03a51bb5-3370-4620-b1a3-6a666363f531" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FEd9lWNFzHYj4EpYov6dZ%2FScreenshot_11.png?alt=media&#x26;token=e0bd9fa2-54e5-4f5b-a0fa-7c54d15e8703" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FLBRXuDHFNKh56aYUwCwf%2FScreenshot_12.png?alt=media&#x26;token=74917f18-288d-4808-8686-88d534f3e530" alt=""><figcaption></figcaption></figure></div>

{% hint style="info" %}
Please see our guide on how to set up [**Gmail with Hideez Enterprise Server.**](https://enterprise.hideez.com/faq/setting-up-gmail-with-hes)
{% endhint %}

### **3. Licensing**

* **Import License**:
  * Click the **Import License** button.
  * Upload the license file downloaded from the Hideez Portal, or contact support to generate a license for you.

{% hint style="info" %}
Import the file license that you download from the [Hideez Portal](https://portal.hideez.com/). Or you can [ask us](mailto:support@hideez.com), and we will generate a license for you.
{% endhint %}

<div><figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FTFUU8BdA98aKenPyRJFR%2FScreenshot_14.png?alt=media&#x26;token=ab06fbca-2b46-4900-87b0-f8ba78edde57" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FFlWU3sxbFAvtHHeFoRG9%2FScreenshot_15.png?alt=media&#x26;token=5202ed9b-6848-4bfc-bf50-1bea0986be8c" alt=""><figcaption></figcaption></figure></div>

***

### **4. Active Directory (On-premises)**

To work with Active Directory (AD) using HES, the following parameters must be specified:

* **Add Domain Settings**:
  * Click **Settings → Parameters → Add Domain Settings**.
* **Fill in the Domain Parameters**:
  * **Domain Name**: Enter your Active Directory domain (required for user import).
  * **User Logon Name**: AD administrator's login with permissions to access users and groups.
  * **Password**: AD administrator's password.
  * **Auto Password Change (days)**: Number of days after which users from the Security Key Auto Password Change group need to change their passwords.

<div><figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2F2cJoxgq575krDZO8QrlX%2FScreenshot_25.jpg?alt=media&#x26;token=44886e17-88fc-4025-86a2-627fd3415caa" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FnDcElfn8Cz9JE2aepA2B%2FScreenshot_10.png?alt=media&#x26;token=b529f216-1882-4017-aea2-ffdd6d4f0a37" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FdwO8Y0kxpAc3jRTrqAz3%2FScreenshot_11.png?alt=media&#x26;token=ac30deb0-227b-419b-8b28-249149a0419d" alt=""><figcaption></figcaption></figure></div>

{% hint style="info" %}
For detailed permission requirements for Active Directory users, see [**Configuring Access to Active Directory On-Premises and Delegating Rights.**](https://enterprise.hideez.com/hideez-enterprise-server/administration/broken-reference)
{% endhint %}

***

### **5. Azure AD (Entra)**

To connect Azure AD with HES, follow these steps:

1. **Add Domain Settings**:

   * Open **Settings → Parameters → Add Domain Settings** and select the **Azure Active Directory** radio button.

<div><figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FH2onvUGRBDu3EoRiSdmz%2Fimage%20(2).jpg?alt=media&#x26;token=e27910ec-2c42-4342-b802-8a5b046412aa" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2F6lqRH7oS0VHUzGGXQ54Z%2Fimage%20(1).jpg?alt=media&#x26;token=b5c9b9db-107c-4d4a-a79b-a6de9015716d" alt=""><figcaption></figcaption></figure></div>

{% hint style="info" %}
[**Please see our guide on how to connect Azure AD to Hideez Enterprise Server.**](#id-6.-azure-a-d-entra)
{% endhint %}

***

### **6. Domain Settings**

* **Domain Credentials**: Used to connect to Active Directory via LDAPS.
* **Users Default Single Sign-On Settings**: Applies to all users synchronized from Active Directory; [can be modified for individual users later.](https://enterprise.hideez.com/single-sign-on-settings/nastroika-polzovatelei#if-you-have-already-created-employee-select-an-employee-and-click-the-edit-button.-then-click-the-en)
* **Workstation Passwordless Logon Settings**: Update these settings as necessary.&#x20;

<div><figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2Fwi6mTWikCVnD9g0xiuWU%2FScreenshot_18.png?alt=media&#x26;token=9f77b529-dc6a-4dc9-bfd7-6a9f583fc279" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FnillulQh8BOMA2lySup1%2FScreenshot_19.png?alt=media&#x26;token=6eff6e08-3416-43a9-a9aa-1d8cabd873e6" alt=""><figcaption></figcaption></figure> <figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FhEptaUssh6BugkhqWH3s%2FScreenshot_20.png?alt=media&#x26;token=453a4ffb-8f1f-46fa-88dc-f92df9919d8c" alt=""><figcaption></figcaption></figure></div>

<figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FI1V3kww1qdiE2I3vfijD%2Fimage.png?alt=media&#x26;token=f18a8b73-44d4-4b1c-9048-948363cd232c" alt="" width="563"><figcaption></figcaption></figure>

{% hint style="info" %}
[Please see our guide on how to set up Workstation passwordless logon.](https://enterprise.hideez.com/hideez-authenticator-app/admin-guide/setup-for-pc-login-scenario/passwordless-pc-login-setup)&#x20;
{% endhint %}

### **7. Splunk**&#x20;

{% hint style="info" %}
Splunk is a powerful platform designed for searching, monitoring, and analyzing machine-generated data (such as logs, metrics, and events) from applications, systems, and infrastructures. It is widely used for operational intelligence, security, and data analytics.
{% endhint %}

<figure><img src="https://1669663611-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FRdTysrljwe610dPFG7tE%2Fuploads%2FoHYYZqSY1gUPNdxxCFjn%2FScreenshot_21.png?alt=media&#x26;token=0005cb14-98f4-44a9-ac8b-6ac6079bd6ee" alt="" width="563"><figcaption></figcaption></figure>

***

### **8. FIDO2**

{% hint style="info" %}
**FIDO (Fast IDentity Online)** is a set of standards that enables secure and passwordless authentication. FIDO2 allows users to authenticate using various methods, such as biometric data (fingerprint or face recognition) and security keys, enhancing security and user experience by eliminating the need for traditional passwords.
{% endhint %}

### **9. SAML**&#x20;

Refer to documentation for additional SAML configuration details.

***

### **10. OIDC**

Set parameters for OpenID Connect clients in the OIDC section. Refer to the documentation for more information.

***

### **11.  Appearance Settings**

In this section, you can customize logos and email settings for the server.

***
