Chapter 13 User Accounts and Groups

able increases reliability of the connection and eliminates problems in cases when a domain controller fails. The other option (specification of a controller) is recommended for domains with one server only (speeds the process up).

Encrypted connection — to increase security of the communication with the domain server, encrypted connection can be used (thus, the traffic cannot be tapped). In such a case, encrypted connection must be enabled at the domain server. For details, refer to documents regarding the corresponding operating system.

NT authentication support

For the Active Directory domain, NTLM is also available as an authentication method. This option is required if you intend to use automatic authentication in web browsers (see chapter 23.3).

For NTLM authentication, name of the NT domain corresponding with the domain specified in the Active Directory domain is required.

For mapping from multiple Active Directory domains, click on Define Multiple Domains.

Multiple domains mapping

Click Define Multiple Domains to switch the Active Directory tab to the mode where domains are listed.

Figure 13.15 Mapping of multiple Active Directory domains

202

Page 202
Image 202
Kerio Tech Firewall6 manual NT authentication support, Multiple domains mapping, 202