18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 4: Understanding Policy Configuration<br />

Proxy rule basics<br />

116<br />

Figure 49: Sample<br />

Network Configuration<br />

Table 14: Optional proxy rule options<br />

Optional Rule<br />

Criteria<br />

Setting<br />

Comments<br />

User Group marketing Specify the name <strong>of</strong> a user group.<br />

Authentication Password Specify the authentication method(s). FTP<br />

and Telnet proxies and console logins can<br />

also specify Password, Radius, SafeWord,<br />

SecurID, or SNK.<br />

Times/Day Mon-Fri<br />

7am-7pm<br />

Important: If you are not using SSO, user groups can be used in an allow rule only<br />

if the specified service supports authentication (login, Telnet, FTP, Web, or secure<br />

shell [SSH]).<br />

Example <strong>of</strong> proxy rules using netgroups<br />

Specify the time restrictions for allowing or<br />

denying service.<br />

For the configuration shown in Figure 13, the <strong>Sidewinder</strong> <strong>G2</strong> administrator has<br />

grouped all internal systems into one <strong>of</strong> three netgroups: marketing<br />

(mkt_net_group), engineering (eng_net_group), and accounting<br />

(acct_net_group).<br />

Note: For more information on netgroups, see “Network objects” on page 105.<br />

mkt_net_grp<br />

eng_net_grp<br />

acct_net_grp<br />

internal burb<br />

172.20.1.1<br />

proxies<br />

<strong>Sidewinder</strong> <strong>G2</strong><br />

external burb<br />

192.55.214.2<br />

Internet<br />

192.55.12.3

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!