18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 9: Configuring Proxies<br />

Notes on selected proxy configurations<br />

256<br />

Important: Using the Admin Console, you can also set up a Telnet proxy from the<br />

external burb to an internal burb on your <strong>Sidewinder</strong> <strong>G2</strong>. This is only required in<br />

specialized cases. For example, if you are using a strong authentication method to<br />

authenticate Telnet sessions, you may want to allow administrators to remotely<br />

access a server inside your network. Before setting up this type <strong>of</strong> proxy, you may<br />

want to contact Secure Computing to get assistance addressing any security issues<br />

this presents.<br />

Note: If an Internet Telnet server is not available when a trusted user tries to<br />

connect, the user will NOT receive a message stating that the connection was<br />

unsuccessful.<br />

The following steps summarize the tasks you need to perform to set up Telnet<br />

access for internal users.<br />

1 Enable the Telnet proxy for the appropriate burb(s). (See “Configuring<br />

proxies” on page 266.) The Telnet proxy runs in its own domain on the<br />

<strong>Sidewinder</strong> <strong>G2</strong>.<br />

2 Ensure that the Internet Services proxy rule is enabled and is contained in<br />

the active rule group. The Internet Services proxy rule consists <strong>of</strong> a service<br />

group that contains Telnet as well as other Internet services. (You can also<br />

create an individual telnet_out rule if you want to configure authentication<br />

specifically for Telnet.) See “Creating proxy rules” on page 222.<br />

This rule allows users from one <strong>of</strong> your trusted burbs to Telnet to the Internet.<br />

You can use the Admin Console to disable this proxy rule or change its<br />

settings to control which internal users are allowed Telnet access and to<br />

which external systems they can connect. See “Users and user groups” on<br />

page 104 for detailed information.<br />

3 [Optional] Configure the <strong>Sidewinder</strong> <strong>G2</strong> to authenticate all users requesting<br />

Telnet service before the <strong>Sidewinder</strong> <strong>G2</strong> makes the network connection.<br />

Refer to Chapter 10 for details on the authentication methods supported by<br />

the <strong>Sidewinder</strong> <strong>G2</strong>.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!