3.
Click OK
B. Set up the Authentication Rule
1.
Go to User Authentication > User Authentication Rules > Add > User Authentication Rule
2.
Now enter:
•
Name: HTTPLogin
•
Agent: HTTP
•
Authentication Source: Local
•
Interface: lan
•
Originator IP: lannet
3.
For Local User DB choose lannet_auth_users
4.
For Login Type choose HTMLForm
5.
Click OK
C. Set up an IP rule to allow authenticated users to browse the Web.
1.
Go to Rules > IP Rules > Add> IP rule
2.
Now enter:
•
Name: Allow_http_auth
•
Action: NAT
•
Service: HTTP
•
Source Interface: lan
•
Source Network: lannet_users
•
Destination Interface any
•
Destination Network all-nets
3.
Click OK
Example 8.3. Configuring a RADIUS Server
The following steps illustrate how a RADIUS server is typically configured.
Web Interface
1.
User Authentication > External User Databases> Add > External User Database
2.
Now enter:
a.
Name: Enter a name for the server, for example ex-users
b.
Type: Select RADIUS
c.
IP Address: Enter the IP address of the server, or enter the symbolic name if the server has been
defined in the Address Book
d.
Port: 1812 (RADIUS service uses UDP port 1812 by default)
e.
Retry Timeout: 2 (NetDefendOS will resend the authentication request to the sever if there is no
response after the timeout, for example every 2 seconds. This will be retried a maximum of 3 times)
f.
Shared Secret: Enter a text string here for basic encryption of the RADIUS messages
g.
Confirm Secret: Retype the string to confirm the one typed above
8.2.7. HTTP Authentication
Chapter 8. User Authentication
314
Summary of Contents for 800 - DFL 800 - Security Appliance
Page 24: ...1 3 NetDefendOS State Engine Packet Flow Chapter 1 NetDefendOS Overview 24 ...
Page 69: ...2 6 4 Restore to Factory Defaults Chapter 2 Management and Maintenance 69 ...
Page 121: ...3 9 DNS Chapter 3 Fundamentals 121 ...
Page 181: ...4 7 5 Advanced Settings for Transparent Mode Chapter 4 Routing 181 ...
Page 192: ...5 5 IP Pools Chapter 5 DHCP Services 192 ...
Page 282: ...6 7 Blacklisting Hosts and Networks Chapter 6 Security Mechanisms 282 ...
Page 300: ...mechanism 7 3 7 SAT and FwdFast Rules Chapter 7 Address Translation 300 ...
Page 301: ...7 3 7 SAT and FwdFast Rules Chapter 7 Address Translation 301 ...
Page 318: ...8 3 Customizing HTML Pages Chapter 8 User Authentication 318 ...
Page 322: ...ALG 9 1 5 The TLS Alternative for VPN Chapter 9 VPN 322 ...
Page 377: ...Management Interface Failure with VPN Chapter 9 VPN 377 ...
Page 408: ...10 4 6 SLB_SAT Rules Chapter 10 Traffic Management 408 ...
Page 419: ...11 5 HA Advanced Settings Chapter 11 High Availability 419 ...
Page 426: ...12 3 5 Limitations Chapter 12 ZoneDefense 426 ...
Page 449: ...13 9 Miscellaneous Settings Chapter 13 Advanced Settings 449 ...