18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Using the HTTP proxy<br />

4. Create an HTTPS proxy rule to allow access. The fields listed below must<br />

be configured as specified:<br />

Note: You can configure rule fields that are not listed below as you see fit. For more<br />

information on creating proxy rules, see “Creating proxy rules” on page 7-4.<br />

General tab—Service Type=Proxy, Service=HTTPS, Action=Allow<br />

Source/Dest tab—Redirect Host=IP Address network object for the<br />

protected server, Redirect Port=80<br />

[Optional] Authentication tab—If you want to require users to<br />

authenticate via the proxy before being allowed access, you will<br />

need to select Authenticate using SSO.<br />

[Optional] Time tab—Configure as needed.<br />

Application Defense tab—Select the defense you created in<br />

step 3.<br />

5. Add the HTTPS proxy rule to the active proxy rule group.<br />

Once this rule is included in the active rule group, the <strong>Sidewinder</strong> <strong>G2</strong> is<br />

ready to allow trusted remote users access to the internal network.<br />

How trusted remote users gain access to the internal network<br />

This section lists the steps required for trusted remote users to gain<br />

access to a protected internal server. The procedure will vary<br />

depending on whether you have configured the HTTPS proxy rule to<br />

require authentication.<br />

If a user is not required to authenticate via the proxy:<br />

1. Point your browser to the <strong>Sidewinder</strong> <strong>G2</strong> decrypting HTTPS proxy (for<br />

example, https://SW<strong>G2</strong>_address.com).<br />

Note: Your Web browser may prompt you to approve the certificate that is<br />

presented by the <strong>Sidewinder</strong> <strong>G2</strong>.<br />

2. Authenticate to the server. If your server requires authentication, an<br />

authentication prompt will appear. When you successfully authenticate,<br />

you will be allowed to access that server.<br />

If a user is required to authenticate via the proxy:<br />

1. Point your browser to the <strong>Sidewinder</strong> <strong>G2</strong> SSO direct login page and<br />

authenticate.<br />

2. [Conditional] If the server you are accessing requires certificate<br />

validation, you will need to approve the certificate before you can<br />

authenticate to the server.<br />

Setting Up Web Services 12-9

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!