Symantec PCANYWHERE - ADMINISTRATOR GUIDE V12.1 Administrator's Manual page 92

Hide thumbs Also See for PCANYWHERE - ADMINISTRATOR GUIDE V12.1:
Table of Contents

Advertisement

92
Managing security in Symantec pcAnywhere
Controlling access to pcAnywhere hosts
On the host computer, open pcAnywhere and configure a host connection item
to use SecurID authentication.
For more information, see the Symantec pcAnywhere User's Guide.
When a remote user attempts to connect to a host computer that uses SecurID
authentication, the user is prompted for authentication credentials which include
a PIN number, logon name, and passcode.
The host computer handles the data requests between the remote computer and
the RSA ACE/Agent, which is installed on the host computer. The RSA ACE/Agent
handles the data requests between the host computer and the RSA ACE/Server.
If the tokencode that is provided by the remote user is out of sync with the server
clock or appears to be compromised, the user is prompted for another tokencode.
This Next Tokencode is generated by the SecurID authenticator. The remote user
must wait for this tokencode before continuing.
Note: To use RSA SecurID authentication, the host and remote computers must
be running Symantec pcAnywhere 11.0.x or later.
Using Microsoft Windows-based authentication types
Table 6-1
includes information about the authentication types available for
Microsoft Windows-based platforms.
Microsoft Windows-based authentication types
Table 6-1
Microsoft Windows-based
authentication types
ADS (Active Directory Server) (For
Windows 2000 only)
Microsoft LDAP
NT (For Windows 2000/2003
Server/XP/Vista)
Explanation
Validates a user or group
by checking a list stored
in an Active Directory
Service.
Validates a user or group
by checking a user list
stored in a Lightweight
Directory Access Protocol
(LDAP) 3.0-compliant
directory service.
Validates a user or group
by checking a workstation
or user domain list.
Implementation in
pcAnywhere
Users can browse an ADS
tree for user or group
names.
Users must log on to the
LDAP server, and then
they can browse for user
names.
Users on Windows NT can
browse a domain list for
user or group names.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Pcanywhere

Table of Contents