Authentication Process; Creating An Authentication User Group - D-Link NetDefend DFL-210 User Manual

Network security firewall ver. 1.05
Hide thumbs Also See for NetDefend DFL-210:
Table of Contents

Advertisement

8.3. Authentication Process

8.3. Authentication Process
NetDefendOS performs user authentication in the following series of steps:
A user creates a new connection to the firewall.
NetDefendOS sees the new user connection on an interface, and checks the IP Rule-set to see if
their is an authentication policy set for traffic on this interface and coming from this network.
According to the authentication policy specified in the matching IP Rule, NetDefendOS prompts
the user with an authentication request.
The user replies by entering their identification information which could be a username/pass-
word pair.
NetDefendOS validates the information with respect to the authentication source specified in the
authentication rule. This will be either the local NetDefendOS database or an external database
in a RADIUS server will be taken.
If a matching entry in the database is found, NetDefendOS responds with an approval message,
otherwise rejection.
NetDefendOS then forwards the approved user's further service requests to their desired destina-
tions, if the service is allowed by an IP rule explicitly and the user is a member of the
user(s)/group(s) defined on the address object of that rule. Requests from those failing the au-
thentication step are discarded.
After a certain time period, the authenticated user will be automatically logged out according to
the timeout restrictions defined in the authentication rule.
Example 8.1. Creating an authentication user group
In the example of an authentication address object in the Address Book, a user group "users" is used to enable
user authentication on "lannet". This example shows how to configure the user group in the NetDefendOS data-
base.
Web Interface
Step A
1.
Go to User Authentication > Local User Databases > Add > LocalUserDatabase
2.
Now enter:
Name: lannet_auth_users
Comments: folder for "lannet" authentication user group - "users"
3.
Click OK
Step B
1.
Go to lannet_auth_users > Add > User
2.
Now enter:
Username: Enter the user's account name here, e.g. "user1"
Password: Enter the user's password
Confirm Password: Repeat the password
178
Chapter 8. User Authentication

Advertisement

Table of Contents
loading

Table of Contents