Kerio Tech Firewall6 manual NT domain / Kerberos, Groups, 189

Models: Firewall6

1 398
Download 398 pages 11.9 Kb
Page 189
Image 189

13.2 Local user accounts

the domain (see chapter 13.1) or they can be set especially for the corresponding account.

Using a template is suitable for common accounts in the domain (common user accounts). Definition of accounts is simpler and faster, if a template is used. Individual configuration is recommended especially for accounts with special rights (e.g. WinRoute administration accounts). Usually, there are not many such accounts which means their configuration comfortable.

Authentication options:

Internal user database

User account information is stored locally to WinRoute. In such a case, specify the Password and Confirm password items (later, the password can be edited in the Web interface — see chapter 9).

Warning:

1.Passwords may contain printable symbols only (letters, numbers, punctuation marks). Password is case-sensitive. We recommend not to use special charac- ters (non-English languages) which might cause problems when authenticating via the Web interface.

2.NTLM authentication cannot be used for automatic authentication method by NTLM (refer to chapter 23.3).. These accounts also cannot be used for authen- tication to the Clientless SSL-VPNinterface (see chapter 22).

NT domain / Kerberos 5

Users are authenticated through the Windows NT domain (Windows NT 4.0) or through the Active Directory (Windows 2000/2003).

Go to the Users section of the Active Directory / NT domain tab to set parameters for user authentication through the NT domain or through the Active Directory. If Active Directory authentication is set also for NT domain, it will be preferred.

Note: User accounts with this type of authentication set will not be active unless authentication through Active Directory or/and NT domain is enabled. For details, see chapter 13.3.

Step 2 — groups

Groups into which the user will be included can be added or removed with the Add or the Remove button within this dialog (to create new groups go to User and Groups Groups — see chapter 13.5). Follow the same guidelines to add users to groups during group definition. It is not important whether groups or users are defined first.

HINT: While adding new groups you can mark more than one group by holding either the Ctrl or theShift key.

189

Page 189
Image 189
Kerio Tech Firewall6 manual NT domain / Kerberos, Groups, 189