18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Setting up<br />

authentication for<br />

administrators<br />

Setting up authentication for administrators<br />

2. Ensure that the Web proxy server or HTTP proxy is configured, enabled,<br />

and is using the proper authentication method.<br />

To enable and configure the Web proxy server, see “Configuring<br />

the Web proxy server” on page 12-12.<br />

To enable and configure the HTTP proxy, see “Configuring proxy<br />

properties” on page 8-28.<br />

3. Add or modify proxy rules as needed. You must create one or more<br />

rules that define Web access between two burbs on your <strong>Sidewinder</strong><br />

<strong>G2</strong>.<br />

Note: When using standard password authentication, you may want to allow users<br />

to change their own log in password from their terminal or workstation. See<br />

“Allowing users to change their passwords” on page 9-34.<br />

By default, all administrators who log in to the <strong>Sidewinder</strong> <strong>G2</strong> are<br />

authenticated using standard password authentication. You can<br />

configure the <strong>Sidewinder</strong> <strong>G2</strong> to require a stronger authentication for<br />

administrator log in methods. To do so, see “Setting up authentication<br />

for services” on page 9-30 to modify the appropriate proxy rule(s). For<br />

example, if your <strong>Sidewinder</strong> <strong>G2</strong> was installed with the Standard<br />

Internet set <strong>of</strong> services you might modify the login_console proxy rule.<br />

When an administrator replies to a login: prompt during a console<br />

or Telnet connection request, they can chose the authentication<br />

method the <strong>Sidewinder</strong> <strong>G2</strong> should use. For example:<br />

>login: login_name:-password<br />

>login: login_name:-ldap<br />

>login: login_name:-msnt<br />

>login: login_name:-snk<br />

>login: login_name:-securid<br />

>login: login_name:-safeword<br />

>login: login_name:-radius<br />

Note that this is similar to the response entered by your Telnet, FTP,<br />

SOCKS5, and Web users (see “Setting up authentication for services”<br />

on page 9-30), except that a dash (-) must precede the name <strong>of</strong> the<br />

authentication method. Shortcuts cannot be used; you must enter the<br />

entire name.<br />

Setting Up Authentication 9-33

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!