Chrome OS Configuration: Difference between revisions

From Opendium Documentation
Jump to navigation Jump to search
(I have added a new page for adding the https decryption certificate to chrome OS)
 
m (Add to categories)
 
Line 44: Line 44:
==Shared Devices==
==Shared Devices==
Coming Soon.
Coming Soon.
[[Category:Client Configuration]]
[[Category:To do]]

Latest revision as of 10:06, 8 November 2024

One-to-one devices

This section covers devices which are not managed by the school through an MDM and are standalone or BYOD devices information on shared devices will be updated at a later date in the Shared Devices section.

  • If possible, configure your wireless network to use 802.1x (WPA-Enterprise) authentication and to send RADIUS accounting data to the Opendium system. Set the User Identification mode to RADIUS. If 802.1x authentication cannot be used, Set the User Identification mode to Single User Devices.
  • If you are using 802.1x and RADIUS accounting, log the device onto the network with the user's credentials.
  • If you are not using 802.1x and RADIUS accounting, the user must use the captive portal to authenticate.

If the network's HTTPS Decryption mode is set to Active, you must install your unique Opendium inspection certificate:

  • Open and login to the Chromebook
  • Open chrome web browser and navigate to the certificate location <UTM/Webgateway>/opendium.crt
  • This will download the certificate to your chromebook, click show in folder to confirm the certificate has downloaded and where it is saved. by default this will be the downloads folder:


Certificate in downloads folder.


  • In the URI bar go to chrome://settings or click the three dots top right and click settings:
4 chrome settings.png
  • Navigate to: Privacy and Security -> Security -> Advanced -> Manage Certificates
Privacy and Security.png
Manage Certificate.png
  • Select the Authorities tab
Certificate Authorities.png
  • Click Import and select opendium.crt if it isn't visible navigate to the location you downloaded the certificate to above.
Certificate in downloads.png
  • Select at least "Trust this certificate for identifying websites" and click OK
Trust certificate.png
  • Check the opendium certificate is in the authorities list by scrolling down the list.
Check cert.png


You should now be able to browse HTTPS sites without getting a security warning.

Shared Devices

Coming Soon.