Chapter 35 User/Group

The following table describes the labels in this screen.

Table 172 Configuration > User/Group > User > Add

LABEL

DESCRIPTION

User Name

Type the user name for this user account. You may use 1-31

 

alphanumeric characters, underscores(_), or dashes (-), but the first

 

character cannot be a number. This value is case-sensitive. User

 

names have to be different than user group names, and some words

 

are reserved. See Section 35.2.1.1 on page 586.

 

 

User Type

Select what type of user this is. Choices are:

 

admin - this user can look at and change the configuration of the

 

ZyWALL

 

limited-admin- this user can look at the configuration of the

 

ZyWALL but not to change it

 

user - this user has access to the ZyWALL’s services but cannot

 

look at the configuration

 

guest - this user has access to the ZyWALL’s services but cannot

 

look at the configuration

 

ext-user- this user account is maintained in a remote server, such

 

as RADIUS or LDAP. See Ext-User Accounts on page 584 for more

 

information about this type.

 

ext-group-user- this user account is maintained in a remote

 

server, such as RADIUS or LDAP. See Ext-Group-User Accounts on

 

page 585 for more information about this type.

 

 

Password

This field is not available if you select the ext-useror ext-group-

 

user type.

 

Enter the password of this user account. It can consist of 4 - 31

 

alphanumeric characters.

 

 

Retype

This field is not available if you select the ext-useror ext-group-

 

user type.

 

 

Group Identifier

This field is available for a ext-group-usertype user account.

 

Specify the value of the AD or LDAP server’s Group Membership

 

Attribute that identifies the group to which this user belongs.

 

 

Associated AAA

This field is available for a ext-group-usertype user account. Select

Server Object

the AAA server to use to authenticate this account’s users.

 

 

Description

Enter the description of each user, if any. You can use up to 60

 

printable ASCII characters. Default descriptions are provided.

 

 

Authentication

This field is not available if you select the ext-group-usertype.

Timeout Settings

If you want to set authentication timeout to a value other than the

 

default settings, select Use Manual Settings then fill your preferred

 

values in the fields that follow.

 

 

Lease Time

This field is not available if you select the ext-group-usertype.

 

Enter the number of minutes this user has to renew the current

 

session before the user is logged out. You can specify 1 to 1440

 

minutes. You can enter 0 to make the number of minutes unlimited.

 

Admin users renew the session every time the main screen refreshes

 

in the Web Configurator. Access users can renew the session by

 

clicking the Renew button on their screen. If you allow access users

 

to renew time automatically (see Section 35.4 on page 591), the users

 

can select this check box on their screen as well. In this case, the

 

session is automatically renewed before the lease time expires.

 

 

588

 

ZyWALL USG 50 User’s Guide