iPrism
Tag
|INFO|
|RATING|
Directory Services
iPrism can be configured to filter Internet traffic in a variety of ways.
•
By IP address. Each IP address range is assigned a Web Profile and an Application Profile. If,
however, the user moves from one system to another (e.g., a desktop workstation with a very
open profile to a lab machine with a very restricted profile), the more restrictive profile applies.
•
By username. Three different sources are accessed for user information:
•
Redirect their first web access to an iPrism login page: Once a user logs in, iPrism knows
who they are and can provide filtering based on the profiles assigned to their username.
•
Local authentication: For a limited set of users, a local user list resides on the iPrism itself,
which does not require contacting an external authentication server (for more information,
Local
Authentication).
We recommend that you use local authentication only when you initially set up your iPrism. It is
the simplest form of authentication and is extremely easy to set up. This will give you a chance to
see how the iPrism authentication system works on a limited basis, without having to worry
about what may be going on between a Directory Service and iPrism.
•
Protocols to connect to Directory Services: For a larger user base, iPrism can be
configured to use a Windows 2008 (Kerberos), Windows 2000/2003 (NTLM), or LDAP
(Unix, Linux, Novell, Mac OS X) directory service.
See
Microsoft Windows Active Directory Authentication (Active Directory 2008)
Windows authentication, and
After you gain experience with the system, you will most likely want to connect to a Directory
Service by configuring your iPrism to use Windows 2008 (Kerberos), Windows 2000/2003
(NTLM), or LDAP-based authentication. This will expand your user base to a much wider
audience.
Note: iPrism can use only one directory service at a time.
Chapter 7 System Settings
Description
An Information button, which provides more information
about the Access Denied page.
The rating of the site trying to be accessed.
LDAP Authentication
for information on LDAP authentication.
Administration Guide
for details on
101
Need help?
Do you have a question about the iPrism Web Security and is the answer not in the manual?
Questions and answers