Chapter 34 User/Group

 

Table 162 User/Group > Setting (continued)

 

LABEL

DESCRIPTION

 

User Logon

 

 

Setting

 

 

 

 

 

Limit ... for

Select this check box if you want to set a limit on the number of simultaneous logins

 

administratio

by admin users. If you do not select this, admin users can login as many times as

 

n account

they want at the same time using the same or different IP addresses.

 

 

 

 

Maximum

This field is effective when Limit ... for administration account is checked. Type

 

number per

the maximum number of simultaneous logins by each admin user. The number

 

administratio

must be between 1 and 1024.

 

n account

 

 

Limit ... for

Select this check box if you want to set a limit on the number of simultaneous logins

 

access

by non-admin users. If you do not select this, access users can login as many times

 

account

as they want as long as they use different IP addresses.

 

 

 

 

Maximum

This field is effective when Limit ... for access account is checked. Type the

 

number per

maximum number of simultaneous logins by each access user. The number must

 

access

be between 1 and 1024.

 

account

 

 

User Lockout

 

 

Setting

 

 

 

 

 

Enable logon

Select this check box to set a limit on the number of times each user can login

 

retry limit

unsuccessfully (for example, wrong password) before the IP address is locked out

 

 

for a specified amount of time.

 

 

 

 

Maximum

This field is effective when Enable logon retry limit is checked. Type the

 

retry count

maximum number of times each user can login unsuccessfully before the IP

 

 

address is locked out for the specified lockout period. The number must be

 

 

between 1 and 99.

 

 

 

 

Lockout

This field is effective when Enable logon retry limit is checked. Type the number

 

period

of minutes the user must wait to try to login again, if logon retry limit is enabled

 

 

and the maximum retry count is reached. This number must be between 1 and

 

 

65,535 (about 45.5 days).

 

 

 

 

User

 

 

Miscellaneous

 

 

Setting

 

 

 

 

 

Allow

Select this check box if access users can renew lease time automatically, as well

 

renewing

as manually, simply by checking the Updating lease time automatically check

 

lease time ...

box on their screen.

 

 

 

 

Enable user

This is applicable for access users.

 

idle detection

Select this check box if you want the ZyWALL to monitor how long each access

 

 

user is logged in and idle (in other words, there is no traffic for this access user).

 

 

The ZyWALL automatically logs out the access user once the User idle timeout

 

 

has been reached.

 

 

 

 

User idle

This is applicable for access users.

 

timeout

This field is effective when Enable user idle detection is checked. Type the

 

 

number of minutes each access user can be logged in and idle before the ZyWALL

 

 

automatically logs out the access user.

 

 

 

 

Force User

Use this section to specify when users must log in to the ZyWALL before the

 

Authentication

ZyWALL routes HTTP traffic for them. Once users have logged in, the ZyWALL can

 

Policy

enforce user-aware policies.

 

 

This section displays the conditions that are applied, in sequence, to decide what

 

 

the appropriate action is. By default, users do not have to log in to the ZyWALL.

 

 

 

 

Total Policy

This is the number of entries configured.

 

 

 

 

Policy per page

Select how many entries to display per page in the screen.

 

 

 

 

511

ZyWALL USG 1000 User’s Guide