Chapter 8 User Authentication

traffic coming from the particular host is detected, WinRoute assumes that it is cur- rently used by the particular user , and the user is considered being authenticated from the IP address. However, users may authenticate from other hosts (using the methods described above).

IP addresses for automatic authentication can be set during definition of user account (see chapter 13.1).

Note: This authentication method is not recommended for cases where hosts are used by multiple users (user’s identity might be misused easily).

Login by re-direction is performed in the following way: user enters URL pages that he/she intends to open in the browser. WinRoute detects whether the user has already authenticated. If not, WinRoute will re-direct the user to the login page automatically. After a successful login, the user is automatically re-directed to the requested page or to the page including the information where the access was denied.

Note: Users will be redirected to a secured or unsecured web interface according to the fact which version of web interface is allowed (see chapter 9.1). If both versions are allowed, the secured web interface will be used.

User authentication advanced options

Login/logout parameters can be set on the Authentication Options tab under Users and

Groups Users.

Figure 8.1 User Authentication Options

122

Page 122
Image 122
Kerio Tech Firewall6 manual User Authentication, User authentication advanced options, 122