18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuring authentication services<br />

9-14 Setting Up Authentication<br />

About the New (or Modify) External Authorization Roles window<br />

The New (or Modify) External Authorization Roles window contains a<br />

single External Role field in which you specify a name for the external<br />

role. Currently, the only external authorization servers that support<br />

roles within a proxy rule are SafeWord PremierAccess and LDAP/<br />

Active Directory. The name <strong>of</strong> the external role must match the name<br />

<strong>of</strong> a group within the server (SafeWord PremierAccess or LDAP) to<br />

which the user belongs.<br />

Click Add to add the entry to the External Authorization Roles list, to<br />

add the entry and close the window.<br />

Configuring and managing the locked out users<br />

This window allows you to configure the authentication failure<br />

lockout feature on your <strong>Sidewinder</strong> <strong>G2</strong>. The authentication failure<br />

lockout feature allows you to configure the <strong>Sidewinder</strong> <strong>G2</strong> to block<br />

access to a user if the number <strong>of</strong> consecutive failed authentication<br />

attempts reaches a configured number. This protects unauthorized<br />

users from multiple attempts at guessing an user’s password. Using<br />

this window, you can perform the following actions:<br />

Important: If all administrators become locked out <strong>of</strong> the <strong>Sidewinder</strong> <strong>G2</strong>, see “Manually<br />

clearing an authentication failure lockout” on page A-21.<br />

Enable or disable the lockout feature—When this feature is enabled,<br />

any time a user account surpasses the specified authentication<br />

attempt threshold without a successful authentication, that user<br />

will be locked out until the lock is cleared by an administrator. The<br />

locked can also be cleared if the locked out administrator logs in<br />

at the <strong>Sidewinder</strong> <strong>G2</strong> using the correct login information. To<br />

enable this feature, select the Enable radio button. To disable this<br />

feature, select the Disable radio button.<br />

Note: When authentication failure lockout is enabled, the client-side cache is<br />

emptied and authenticated allow rules will not be cached.<br />

View locked out users—The Locked Out Users area lists any users who<br />

are currently locked out <strong>of</strong> the <strong>Sidewinder</strong> <strong>G2</strong> due to exceeded<br />

authentication failures. It will also display the number <strong>of</strong> failed<br />

login attempts for each user.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!