Authentication

As a security precaution it is wise to authenticate users who are accessing your internet or intranet servers.



Download the Multifonction Firewall Brochure

Introduction


The NETASQ Benefit
fleche Advanced user authentication is included as standard on all NETASQ UTM appliances. Authentication methods include NTLM, RADIUS, Kerberos, client certificate and LDAP.

fleche NETASQ offers several additional security mechanisms, such as SRP, which provide safe authentication. Where an external user database is not available, NETASQ UTM will use its own internal LDAP database and internal PKI server.


In the case of mobile access, it is important to make sure only authorized users are able to log on and view the requested resources.

Another reason for user authentication is to monitor employee productivity. This enables businesses to log user access and their use of key resources such as the Internet. NETASQ UTM appliances offer several authentication methods for authorizing connectivity and remote user authentication. The firewall policy can be adjusted so that authentication is required before a rule can be used.

The user database that contains usernames and passwords can be stored locally on the UTM or in an external database such as LDAP or Active Directory.


For incoming connections from mobile users.
NETASQ UTM offers IPSEC and SSL solutions. Both solutions provide advanced authentication methods. IPSEC offers shared secret and client certificate as authentication mechanisms. For SSL connections, NETASQ provides an authentication portal, where users can provide their credentials. These can be password, token or PKI client certificate based. Users can also request to connect via an SSL portal. Access is confirmed when user details have been validated.

When a user without an account is identified, web enrollment is provided for both LDAP and PKI. NETASQ also supports Single Sign On solutions to optimize ease of use. A captive portal can be provided for authentication purposes, which resides on the UTM appliance. NETASQ also allows your Network Manager to determine how long a user will have access to the portal before the need for re-authentication. It also includes controls allowing user passwords to be amended, through the captive portal or otherwise.



NETASQ©Copyright 2011. All rights reserved Legal