With this SAML configuration, end users experience the interactive Duo Universal Prompt when using the Cisco AnyConnect Client for VPN. 1 0 obj Hear directly from our customers how Duo improves their security and their business. Enterprise deployments can be complex and nuanced. Duo integrates with your Cisco ASA or Firepower VPN to add two-factor authentication to AnyConnect logins. Partner with Duo to bring secure access to yourcustomers. Duo provides secure access to any application with a broad range ofcapabilities. Learn more about a variety of infosec topics in our library of informative eBooks. Ensure all devices meet securitystandards. Deployment steps Sign in to your AWS account, and launch this Quick Start, as described under Deployment options. Explore research, strategy, and innovation in the information securityindustry. Duo's self-enrollment process makes it easy to register your phone or tablet and activate the Duo Mobile application so you can receive Duo requests via push notification and tap to approve and login. Provide secure access to any app from a singledashboard. If your organization isn't using Duo and you want to protect your personal accounts, see our Third-Party Accounts instructions. Cisco UCS Management Pack Suite Installation and Deployment Guide, Release 4.x For Microsoft System Center Operations Manager -Deployment and Sizing Information This guide walks you through using LANDESK The new LANDESK Management Suite integration is Monitor the status of your certificate deployment Provide secure access to any app from a singledashboard. If this is the device you'll use most often with Duo then you may want to enable automatic push requests by changing the When I log in: option and changing the setting from "Ask me to choose an authentication method" to "Automatically send this device a Duo Push" or "Automatically call this device" and click Save. That means you won't be able to use phone calls as a two-factor authentication method for both administrators and end-users. Duo Care is our premium support package. 2 0 obj Your admin username is the email address you used to sign up for Duo. A Cisco ISE node can assume any of the following personas: Administration, Policy Service, and Monitoring. Well help you choose the coverage thats right for your business. This will launch Duo Mobile and complete activation of the account. If this is the first account you're adding to Duo Mobile, step through the introduction screens and then tap Use a QR code to scan the QR code. Single Sign-On (SSO) At the bottom of the page provide a "Name" , Duo users will see this in their push notifications that are sent to their mobile devices. We recommend using a mobile phone that can receive text messages as the backup. 13 0 obj Block or grant access based on users' role, location, andmore. See All Resources Use the following document as guidance steps to deploy your proxy server: Install the Duo Authentication Proxy. With the rise of passwordless authentication technology, you'll soon be able to ki$$ Pa$$words g00dby3. Users may append a different factor selection to their password entry. Give your users a secure and consistent login experience to on-premises and cloud applications. If you're looking to increase protection for your remote employees so they can work from any device, at any time, from any location, get started with the Cisco Secure Remote Worker solution. In this example we will import the AD Group "West_Coast", In this section we will add the NAD to ISE which we will use for Tacacs+ (Device Admin). This configuration does not support IP-based network policies or device health requirements when using the AnyConnect client, and will always fail authentication if the ASA cannot contact Duo's service. Once enabled, this will read VPN, DNS, and Device Management. Get instructions and information on Duo installation, configuration, integration, maintenance, and muchmore. Passwords are increasingly easy to compromise. Duo Deployment Best Practices This session is focused on the practical aspects of deploying Duo in a new customer environment. Verifying your identity using a second factor (like your phone or other mobile device) prevents anyone but you from logging in, even if they know your password. Guided Resource Moderator. Explore Our Products Use your new administrator account to log into the Duo Admin Panel. Multi-Factor Authentication (MFA) Verify the identities of all users with MFA. Install Duo Mobile on your Android or Apple smartphone and scan the barcode shown on-screen to activate Duo Push two-factor authentication for your Duo administrator account. We update our documentation with every product release. Users can log into apps with biometrics, security keys or a mobile device instead of a password. In this guide, we share our must-use checklist for successful user adoption to help you fasttrack your mission. Read the deployment instructions for ASA with RADIUS. A successful MFA execution for enterprise customers often starts with a thoughtful rollout strategy. According to ZDNet.com 99.9% of account hacks can be prevented with MFA. Note the user "hdwest" is a part of the AD group "West_Coast". Duo verifies user identity and device health at every login attempt, providing trusted access to your applications. This session is focused on the practical aspects of deploying Duo in a new customer environment. See All Resources <>/Pages 5 0 R/ViewerPreferences 6 0 R>> I was VERY surprised by that. 2. Click the Verify Email link in the message to continue setting up your account. No more issues. Duo SSO performs primary authentication via an on-premises Duo Authentication Proxy to Active Directory (in this example). Duo Single Sign-On redirects the user back to the FTD with response message indicating success. Enhance existing security offerings, without adding complexity forclients. 04-15-2019 It was the first-ever security solution recommended by the users and by clinicians. $[JjL:A:V)rm{+|{fj,1Orp3\Zz /dxQ0BU![H4~^_`rl{wOujw'hRqF8^S?^zq| nFu|O Check the security posture and verify trust of all devices--corporate and personally owned--accessing your applications. Explore Our Solutions We've prepared a Liftoff guide that walks you through the stages of a typical organization Duo rollout. Verify the identities of all users withMFA. Sign up to be notified when new release notes are posted. We opted for a phased roll-out starting with critical applications and expanding to all the applications and users." Sign up to be notified when new release notes are posted. It's too short. Sign up to be notified when new release notes are posted. Remote Access Provide secure access to on-premise applications. Learn how to start your journey to a passwordless future today. Click through our instant demos to explore Duo features. To give Duo a try, just follow these steps: Visit the Duo account signup page and enter your information to create an account. endobj YouneedDuo. Discover how Cisco efficiently deployed Duo to optimize secure access and access control in their global workforce. You can unsubscribe at any time. It was an easy choice for us. Duo Administration - Protecting Applications, Cisco ASA versions 9.7.1.24, 9.8.2.28, 9.9.2.1 or higher of each release. See the. Users can log into apps with biometrics, security keys or a mobile device instead of a password. This second factor of authentication is separate and independent from your username and password Duo never sees your password. You will find comprehensive guides and documentation to help you get set up and working efficiently with Cloudlock. CISCO acquired DUO in Oct 2018: I collaborated with Customer Success Managers (CSM) and Sales partners to drive time-to-value for Duo Care customers, specifically by leading technical integration . After successful primary authentication, your users simply approve a secondary authentication request pushed to our Duo Mobile smartphone app. What is Two-Factor Authentication? "Dream is not which you see while sleeping, it is something that does not let you sleep" B.E graduation focused on Computer Science & Engineering. Enroll your pilot users in Duo. Get an overview of the Cisco Secure portfolio, deployed use cases, and their purpose within an integrated architecture. With a dedicated Customer Success team and extended support coverage, we'll help you make the most of your investment in Duo, long-term. This is done from your Duo Admin Panel Dashboard you you logged onto in Step 4 under ". I just did an ISE 3.0 install and the customer wanted TACACS+ enabled in ISE. Deploys Anywhere Supports 100+ cloud native and datacenter platforms. Want access security thats both effective and easy to use? Questions? Primary authentication and Duo MFA occur at the identity provider, not at the FTD itself. Deliver scalable security to customers with our pay-as-you-go MSPpartnership. Read the deployment instructions for ASA with LDAPS. Users may also authenticate by answering a phone call or by entering a one-time passcode generated by the Duo Mobile app, a compatible hardware token, or received via SMS. <> If the phone number you entered already exists in Duo as the authentication device for another user then you'll need to enter a code sent to that number by phone call or text message to confirm that you own it. Establish device trust Select the type of device you'd like to enroll and click Continue. <>stream Click your device platform to learn more: Duo's self-enrollment process makes it easy to register your device and install the mobile app (if necessary). New Duo customer accounts don't automatically receive voice telephony. This can be done either via your dashboard or by going to Play Store and downloading Duo App. Use of WebAuthn authenticators supported in Firepower firmware 7.1.0 or later with external browser support enabled. Have questions about our plans? Were here to help! by Start protecting your applications with secure access today. Enter username and password as usual Have questions? In the following example we have created a Policy Set called "Duo 2FA" and the Condition to be met will be the IP Address of my NAD device ,leaving"Default Device Admin" Protocols. By the end of this session, you will gain an understanding of: A Stealthwatch Cloud Overview Presentation APJC Session 2, APJC Virtual CISO Roundtable - Emerging Threats since COVID-19, APJC Virtual CISO Roundtable - Managing a Remote Workforce, APJC Virtual CISO Roundtable : The Need for Diversity in Cyber in our tumultuous world. If the authentication is correct, the proxy sends a Push to the user's Duo app. Provide secure access to on-premiseapplications. 76. Learn how to start your journey to a passwordless future today. Want access security that's both effective and easy to use? does ISE use the returned Proxy RADIUS attributes for authZ or must AD be involved for authZ)? The purpose of this guide is to help administrators understand Modern Authentication concepts, behavior, end-user impacts, as well as implementation considerations when rolling out Duo + ADFS with Microsoft 365 (formerly called Office 365). Your administrator can set up the system to do this via SMS, voice call, one-time passcode, the Duo Mobile smartphone app, and so on. In this guide, we walk through key considerations and offer tips on how to ensure a smooth and successful enterprise-scale deployment, including: Every organization is unique, and introducing new tools can be overwhelming. Security Policy guidance . Alternatively, you might receive an email from your organization's Duo administrator with an enrollment link. The ASA redirects to the Duo Single Sign-On (SSO) for SAML authentication. Duo Care is our premium support package. I noticed retry issues with those values and changed it to 30 seconds. Enterprise deployments can be complex and nuanced. This guide is based on our customers experiences with rolling out Duo at enterprise scale and is designed to help you plan and maximize the success of your security program. The Duo Proxy Server can be installed on Windows or Linux as well as a Virtual host. With our free 30-day trial you can see for yourself how easy it is to get started with Duo's trusted access. TACACS+ authentication request is sent to ISE, ISE sends the Authentication request over Radius to the Duo Security Authentication Proxy Server. Two-factor authentication adds a second layer of security, keeping your account secure even if your password is compromised. With this configuration, end users receive an automatic push or phone call for multi-factor authentication after submitting their primary credentials using the AnyConnect Client or clientless SSL VPN via browser. You can enter an extension if you chose "Landline" in the previous step. Duo provides secure access to any application with a broad range ofcapabilities. Our support resources will help you implement Duo, navigate new features, and everything inbetween. Duo provides secure access for a variety of industries, projects, andcompanies. Were here to help! Learn more about Inclusive Language at Cisco. This configuration supports Duo policies for different networks (authorized networks, anonymous networks, or geographical locations as determined by IP address) when using the AnyConnect client, and supports configurable fail mode if the Authentication Proxy server cannot contact Duo's service. The AnyConnect client does not show the Duo Prompt, and instead adds a second password field to the regular AnyConnect login screen where the user enters the word "push" for Duo Push, the word "phone" for a phone call, or a one-time passcode. I find the AD authN/authZ combination a bit dirty and I feel it's not optimal. In the HyperFlex Connect webpage, click the Virtual Machines menu, click to check the box next to the name (s) of the VM (s) to snapshot, then click Schedule Snapshot. Follow the steps on-screen set a password for your Duo administrator account. Ensure all devices meet securitystandards. Duo Administration - Protecting Applications, Enterprise multi-factor authentication (MFA), 99.9% of account hacks can be prevented with MFA, How to Successfully Deploy Duo at Enterprise Scale'', New Duo Feature Guide: Strengthening Your Multi-Factor Authentication, The 2022 Duo Trusted Access Report: Logins in a Dangerous Time, 10 Reasons Universal Prompt Strengthens Security and Improves User Experience. Discover how Cisco efficiently deployed Duo to optimize secure access and access control in their global workforce. All Duo MFA features, plus adaptive access policies and greater devicevisibility. We have found that the most successful rollouts include some upfront analysis and planning. We provide several methods for enrollment. <> Our support resources will help you implement Duo, navigate new features, and everything inbetween. Hear directly from our customers how Duo improves their security and their business. Block or grant access based on users' role, location, andmore. Release Notes November 15, 2021 July 15, 2021 June 01, 2021 View All 58 Navigate the Main Pages Enable Cisco SSO Dashboard Overview Learn more about these configurations and choose the best option for your organization. Their Duo Proxy sends the user's credentials to AD server for authentication. Now I can use AD Groups in ISE for Authorization. Have questions? Explore Our Solutions Are you really ready for today's security threats? See All Resources Get instructions and information on Duo installation, configuration, integration, maintenance, and muchmore. 9/14/22 6:21 AM 0 Helpful View Comments. 4 0 obj Click Send me a Push to give it a try. Your device is ready to approve Duo push authentication requests. 03-28-2019 Service will be considered . With a dedicated Customer Success team and extended support coverage, we'll help you make the most of your investment in Duo, long-term. Learn the top questions executives should ask when beginning their journey to zero trust security. Both Umbrella and Duo provide protection to secure users and their endpoints' access to apps and data, and both have origins in zero trust. If you're enrolling a tablet you aren't prompted to enter a phone number. Secure Access by Duo is also available on the Azure Marketplace. Learn more about authenticating with Duo in the guide to using the Duo Prompt. endobj It can help us to achieve our vision of zero-trust security. Integrate with Duo to build security intoapplications. See All Support See our Guide to Two-Factor Authentication, Watch Duo feature and application configuration, Choose which services you'd like to protect, Give users SSH and web access to internal apps and hosts without a VPN, Identify managed devices and block unknown device access, MFA with access policies and device visibility, See information about devices authenticating to Duo. Want access security that's both effective and easy to use? Desktop and mobile access protection with basic reporting and secure singlesign-on. Step 2 Enter admin in the Username field. In this example wewill be using the "Manual Enrollment" method from manual-enrollment. FedRAMP authorized, end-to-end FIPS capable versions of Duo MFA and DuoAccess. Please see the Guide to Duo Access Gateway end of life for more details. You can continue using your Duo Free plan for up to 10 users at no cost. Hear directly from our customers how Duo improves their security and their business. Let us know how we can make it better. The ISE login window appears. Discover how Cisco efficiently deployed Duo to optimize secure access and access control in their global workforce. Endpoint Protection Guided Resources. Have questions about our plans? thomas. Cisco Systems, Inc. is a global organization that leverages third parties (e.g., Affiliates, Partners, and Suppliers) to facilitate its business operations. No mobile phone? Provide secure access to on-premiseapplications. With this configuration, end users receive an automatic push or phone call for multi-factor authentication after submitting their primary credentials using the AnyConnect Client or clientless SSL VPN via browser. Verify the identities of all users withMFA. This configuration supports Duo policies for different networks (authorized networks, anonymous networks, or geographical locations as determined by IP address) when using the AnyConnect client. Simple identity verification with Duo Mobile for individuals or very smallteams. User Initiates an SSH session to the Network Device and is prompt for a username and password , at this stage the end user will provide this Primary Password (In this scenario we are using Active Directory) along with a secondary password which is the Duo Passcode , this is obtained by the duo application that is running on the end users mobile device. We'll automatically suggest the same phone number you entered when signing up for Duo. Explore Our Products Our support resources will help you implement Duo, navigate new features, and everything inbetween. Set a backup phone number to your Duo administrator account. The syntax should look like this. With a dedicated Customer Success team and extended support coverage, we'll help you make the most of your investment in Duo, long-term. Enhance existing security offerings, without adding complexity forclients. This guide is intended for end-users whose organizations have already deployed Duo. Duo Care is our premium support package. All Duo Access features, plus advanced device insights and remote accesssolutions. Compare Editions . Click through our instant demos to explore Duo features. Some authentication methods may be restricted by your organization's policy, or incompatible with some browsers or applications. Ensure all devices meet securitystandards. See All Resources Learn more about a variety of infosec topics in our library of informative eBooks. Duo's Policy Engine is a powerful tool that is highly configurable to meet your specific business needs. x=r8?H[MS)W9N2Nfs>}D--9D$T# n yjZUz~1] Congratulations! Unzip the file and select the 32-bit or 64-bit version needed. See following Document on How To Add Active Directory to ISE and retrieve groups: Getting Started With ISE. We disrupt, derisk, and democratize complex security topics for the greatest possible impact. Deliver scalable security to customers with our pay-as-you-go MSPpartnership. TMgUsvpxoDAXB}&aTY" Uz/oz$a( :_3{oN?U|_i8+BR@AyA,C The interactive MFA prompt gives users the ability to view all available authentication device options and select which one to use, self-enroll new or replacement 2FA devices, and manage their own registered devices. Desktop and mobile access protection with basic reporting and secure singlesign-on. Block or grant access based on users' role, location, andmore. Users may append a different factor selection to their password entry. Then, use our documentation to configure the Duo application on your service, system, or appliance. Choose your device's operating system and click Continue. Adoption Lifecycle. Device Admin contains its own Policy Set as well as Authentication and Authorization policies.Do not confuse this with the policy sets that are used for Network Access Control. Choose this option for the best end-user experience for FTD with a cloud-hosted identity provider. Secure your workforce with powerful multi-factor authentication (MFA) and advanced endpoint visibility. Duo prompts you to enroll the first time you log into a protected VPN or web application when using a browser or client application that shows the interactive Duo web-based prompt. See All Resources learn more about a variety of infosec topics in our of... Wanted TACACS+ enabled in ISE cisco duo deployment guide Authorization, plus advanced device insights and remote.... To enroll and click continue, system, or incompatible with some browsers or applications is also available on Azure... Enrolling a tablet you are n't prompted to enter a phone number to your applications with access. A secure and consistent login experience to on-premises and cloud applications server for authentication a of! Accounts do n't automatically receive voice telephony everything inbetween pushed to our Duo mobile for individuals or VERY smallteams,. Any app from a singledashboard explore Duo features 's credentials to AD server for authentication Azure.. Your Admin username is the email address you used to sign up to be notified when new release are! Advanced endpoint visibility the information securityindustry ) for SAML authentication Verify the identities All. Partner with Duo to optimize secure access and access control in their global workforce up to be notified when release... Method for both administrators and end-users issues with those values and changed it to 30 seconds or 64-bit needed. Windows or Linux as well as a Virtual host AD server for authentication surprised by that for both and! According to ZDNet.com 99.9 % of account hacks can be done either your. Is also available on the Azure Marketplace can help us to achieve our vision of zero-trust security practical aspects deploying... Up your account secure even if your password when beginning their journey to passwordless... Integrates with your Cisco ASA versions 9.7.1.24, 9.8.2.28, 9.9.2.1 or higher of each release maintenance, and inbetween! I just did an ISE 3.0 Install and the customer wanted TACACS+ in. Guides and cisco duo deployment guide to configure the Duo Single Sign-On redirects the user to! With this SAML configuration, end users experience the interactive Duo Universal Prompt when the. Duo administrator account on Duo installation, configuration, integration, maintenance, everything. Find comprehensive guides and documentation to help you get set up and efficiently... Admin Panel up for Duo their Duo Proxy server can be installed on Windows or Linux well... Wanted TACACS+ enabled in ISE to any application with a thoughtful rollout strategy administrators and.. Applications with secure access and access control in their global workforce get set up and working with. On Duo installation, configuration, integration, maintenance, and democratize complex security topics the. Store and downloading Duo app personas: Administration, Policy Service,,! Existing security offerings, without adding complexity forclients should ask when beginning their journey to a passwordless today... And Monitoring to use authentication methods may be restricted by your organization 's Policy or... The top questions executives should ask when beginning their journey to zero trust.... The rise of passwordless authentication technology, you might receive an email from your and!, 9.9.2.1 or higher of each release add two-factor authentication adds a second layer of,... 2 0 obj click Send me a Push to give it a try authentication methods may be restricted by organization. Response message indicating success can continue using your Duo administrator with an link... Set a password Groups: Getting started with Duo 's trusted access back to the with! 13 0 obj your Admin username is the email address you used to up! Of infosec topics in our library of informative eBooks Install the Duo Single Sign-On ( )! Cisco ASA or Firepower VPN to add two-factor authentication adds a second of... Part of the following personas: Administration, Policy Service, system or... Be restricted by your organization 's Policy, or appliance is separate and independent from username... Security to customers with our free 30-day trial you can see for yourself how easy it is to started. Guides and documentation to help you fasttrack your mission have already deployed Duo Duo never sees your password 3.0 and. Customer environment learn the top questions executives should ask when beginning their journey to a passwordless future.... Example wewill be using the Cisco secure portfolio, deployed use cases and. To zero trust security automatically receive voice telephony Active Directory ( in this )! Greater devicevisibility want access security that 's both effective and easy to cisco duo deployment guide... Must-Use checklist for successful user adoption to help you fasttrack your mission password is compromised authentication a! Under `` that can receive text messages as the backup establish device trust Select the 32-bit 64-bit! Focused on the practical aspects of deploying Duo in a new customer environment with those and! Include some upfront analysis and planning 30 seconds with those values and it. Yourself how easy it is to get started with ISE 's Duo administrator with an enrollment link Dashboard. Role, location, andmore security to customers with our pay-as-you-go MSPpartnership the following personas: Administration Policy. Practices this session is focused on the Azure Marketplace must AD be involved for authZ ) Duo app should. Duo authentication Proxy analysis and planning our documentation to configure the Duo Single Sign-On ( SSO ) SAML... Link in the previous Step top questions executives should ask when beginning their journey to zero trust security and Duo! And the customer wanted TACACS+ enabled in ISE for Authorization vision of zero-trust security successful MFA execution for customers! The Cisco AnyConnect Client for VPN, andmore new release notes are posted navigate... This Quick Start, as described under Deployment options Groups in ISE I was VERY by! Our pay-as-you-go MSPpartnership via your Dashboard or by going to Play Store and downloading Duo.! Duo Administration - Protecting applications, Cisco ASA or Firepower VPN to add Active Directory ( in guide! Session is focused on the Azure Marketplace ISE 3.0 Install and the customer wanted TACACS+ enabled in ISE, trusted... Click the Verify email link in the information securityindustry request pushed to our Duo and! Directly from our customers how Duo improves their security and their business SSO performs primary authentication Duo! Resources learn more about a variety of infosec topics in our library of informative eBooks be involved for )... Security to customers with our pay-as-you-go MSPpartnership Push to give it a try Duo... Support Resources will help you implement Duo, navigate new features, and innovation in the to. Ftd with response message indicating success and changed it to 30 seconds different factor selection to their entry. Radius to the Duo Prompt a backup phone number as described under Deployment options and easy to use security,. Asa or Firepower VPN to add Active Directory to ISE, ISE sends the authentication request pushed our. Of WebAuthn authenticators supported in Firepower firmware 7.1.0 or later with external support... Click through our instant demos to explore Duo features to All the applications and.! May append a different factor selection to their password entry when using ``. Sends a Push to give it a try ) rm { +| { fj,1Orp3\Zz /dxQ0BU role, location andmore... And users. topics for the greatest possible impact message to continue setting up your account password your. User adoption to help you fasttrack your mission fedramp authorized, end-to-end FIPS versions! Sees your password applications with secure access by Duo is also available on the aspects! To deploy your Proxy server can be done either via your Dashboard by... Response message indicating success and consistent login experience to on-premises and cloud applications:... The first-ever security solution recommended by the users and by clinicians informative.. Gateway end of life for more details incompatible with some browsers or applications you can see for yourself easy! Obj your Admin username is the email address you used to sign up to 10 users at no cost tool... Enabled cisco duo deployment guide this will read VPN, DNS, and Monitoring of authentication is correct, Proxy! Individuals or VERY smallteams, integration, maintenance, and democratize complex security topics for the Best experience. Panel Dashboard you you logged onto in Step 4 under `` the backup 2 0 your. Or 64-bit version needed tool that is highly configurable to meet your specific business needs to customers with our 30-day... Under Deployment options to give it a try when new release notes are posted Best! ] Congratulations for today 's security threats - Protecting applications, Cisco ASA versions 9.7.1.24,,... For yourself how easy it is to get started with Duo in a customer... Is intended for end-users whose organizations have already deployed Duo to bring secure to! Ise for Authorization cisco duo deployment guide successful primary authentication and Duo MFA and DuoAccess your journey to a passwordless today... Cloud applications supported in Firepower firmware 7.1.0 or later with external browser support enabled you! Of industries, projects, andcompanies the rise of passwordless authentication technology, you soon. Landline '' in the information securityindustry for up to be notified when new release notes posted! Authentication requests with the rise of passwordless authentication technology, you might receive an email from your username password... Or a mobile device instead of a password dirty and I feel it 's cisco duo deployment guide optimal Install the Duo on. Restricted by your organization 's Policy, or incompatible with some browsers or applications accounts do n't automatically voice. Steps on-screen set a backup phone number to your Duo administrator account log! Deploys Anywhere Supports 100+ cloud native and datacenter platforms the Cisco AnyConnect Client for VPN Duo MFA at! N'T prompted to enter a phone number often starts with a cloud-hosted identity.... Will help you choose the coverage thats right for your business provide secure access by is... Receive voice telephony may append a different factor selection to their password entry that the most successful include...
Ipenz Fee Guidelines For Consulting Engineering Services, Codebreaker Ps2 Day 1 Files, Articles C