In the case of mobile access, it is important to make sure only authorized users are able to log on and view the requested resources.
Another reason for user authentication is to monitor employee productivity. This enables businesses to log user access and their use of key resources such as the Internet. NETASQ UTM appliances offer several authentication methods for authorizing connectivity and remote user authentication. The firewall policy can be adjusted so that authentication is required before a rule can be used.
The user database that contains usernames and passwords can be stored locally on the UTM or in an external database such as LDAP or Active Directory.
For incoming connections from mobile users.
NETASQ UTM offers
IPSEC and SSL solutions. Both solutions provide advanced authentication methods. IPSEC offers shared secret and client certificate as authentication mechanisms. For SSL connections, NETASQ provides an authentication portal, where users can provide their credentials. These can be password, token or PKI client certificate based. Users can also request to connect via an SSL portal. Access is confirmed when user details have been validated.
When a user without an account is identified, web enrollment is provided for both LDAP and PKI. NETASQ also supports Single Sign On solutions to optimize ease of use. A captive portal can be provided for authentication purposes, which resides on the UTM appliance. NETASQ also allows your Network Manager to determine how long a user will have access to the portal before the need for re-authentication. It also includes controls allowing user passwords to be amended, through the captive portal or otherwise.