Fortress Bridge: Administration
56
on the AUTHENTICATION SETTINGS frame of the SECURITY
SETTINGS screen.
On a Fortress Bridge-secured network, user authentication can
be used by itself or combined with device authentication. The
options that determine whether device authentication is
enabled are also configured globally, in the AUTHENTICATION
SETTINGS frame of the SECURITY SETTINGS screen.
NOTE: Refer to
Section 3.6.6.1 and
for instructions on glo-
bally enabling Local au-
thentication and to
Section 3.6.6.4 for in-
structions on enabling
device authentication.
4.2.1 Maximum User Authentication Retries
The maximum number of unsuccessful authentication attempts
a user will be allowed before being locked out is another global
setting; the same setting configures the maximum number of
times devices can unsuccessfully attempt to authenticate on
the network. (Refer to Section 3.6.6.5 for detailed instructions.)
If a user exceeds the maximum allowable retry attempts to log
on to the Bridge-secured network, s/he will be locked out until
you reset the session.
4.2.1 Default User Authentication Settings
NOTE: Refer to
Section 3.6.6.7 for
detailed instructions on
configuring default user
authentication settings.
While idle timeout and session timeout settings can be
individually configured for each user, the default values for
these settings are determined by the AUTHENTICATION DEFAULTS
set in the AUTHENTICATION SETTINGS frame of the SECURITY
SETTINGS screen.
4.2.2 Individual User Authentication Settings
User authentication on the Fortress Bridge requires the usual
settings to identify, track and manage access for each user on
the Fortress-secured network:
Username - identifies the user on the network—from 1 to 16
alphanumeric characters—required.
Full Name - associates the person, by name, with his/her
user account—up to 64 alphanumeric characters, including
spaces, dashes, dots and underscores—optional.
Password/Verify Password - establishes the credentials the
user must key in to access his/her user account—from 4 to
16 alphanumeric characters, including shifted numeral-key
symbols—required.
Idle Timeout - sets the amount of time the user’s device can
be idle on the network before it must renegotiate keys with
the Bridge.
Idle Timeout is set in minutes, between 0 and 9999. A value
of zero disables idle timeout for that user (his device can be
idle indefinitely without timing out). If you enabled Local
authentication while leaving the settings under
AUTHENTICATION DEFAULTS (Section 3.6.6.7) at their
defaults, the Idle Timeout value in the ADD USER frame will
be at 30 minutes.