01.01.2013 Views

Web Gateway 7.1.5 Product Guide - McAfee

Web Gateway 7.1.5 Product Guide - McAfee

Web Gateway 7.1.5 Product Guide - McAfee

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

5<br />

Authentication and access management<br />

Cookie authentication<br />

Cookie Authentication at HTTP(S) Proxy<br />

This nested rule set handles cookie authentication for users when the Authentication Server method is<br />

not applied.<br />

Nested library rule set — Cookie Authentication at HTTP(S) Proxy<br />

Criteria — Authentication.IsServerRequest equals false AND<br />

(Connection.Protocol equals “HTTP” or Connection.Protocol equals “HTTPS”) AND<br />

Command.Name does not equal “CONNECT” AND Command.Name does not equal “CERTVERIFY”<br />

Cycle — Requests (and IM)<br />

The rule set criteria specifies that the rule set applies when a user sends a request under the HTTP or<br />

HTTPS protocol and the request is not one for opening a connection or verifiying a certificate, as can be<br />

sent in SSL-secured communication, while the Authentication Server method is not required for<br />

authenticating the user.<br />

The following rule sets are nested in this rule set:<br />

• Set Cookie Authentication for Authenticated Clients<br />

• Authenticate Clients with Authentication Server<br />

Set Cookie for Authenticated Clients<br />

This nested rule set handles the setting of cookies for users once they have been successfully<br />

authenticated.<br />

Nested library rule set — Set Cookie for Authenticated Clients<br />

Criteria — Authentication.IsLandingOnServerLanding equals true<br />

Cycle — Requests (and IM)<br />

The rule set criteria specifies that the rule set applies when a user who sent a request from a client has<br />

been successfully authenticated.<br />

The rule set contains the following rule:<br />

Set cookie and redirect client to the requested URL<br />

Always –> Redirect<br />

The rule sets a cookie for a user who has been successfully authenticated and redirects the request<br />

the user sent from a client to the appropriate web server .<br />

The action settings specify a redirect message that is sent to the user.<br />

Processing continues with the next rule set.<br />

Authenticate Clients With Authentication Server<br />

This nested rule set asks users to authenticate if no valid cookie could be found for them and directs<br />

them to the authentication server.<br />

Nested library rule set — Authenticate Clients With Authentication Server<br />

Criteria — Always<br />

Cycle — Requests (and IM)<br />

The rule set contains the following rule:<br />

Redirect clients that do not have a valid cookie to the authentication server<br />

Authentication.Authenticate equals false –><br />

Authenticate<br />

144 <strong>McAfee</strong> <strong>Web</strong> <strong>Gateway</strong> <strong>7.1.5</strong> <strong>Product</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!