Dell SonicWALL Secure Mobile Access 8.5
Administration Guide
341
Assuming that no conflicting user or group policies have been configured, if a user attempted to access:
•
An FTP server at 10.0.0.1, the user would be blocked by Policy 1
•
An FTP server at 10.0.1.5, the user would be blocked by Policy 2
•
An FTP server at 10.0.0.10, the user would be granted access by Policy 3. The IP address range 10.0.0.5 -
10.0.0.20 is more specific than the IP address range defined in Policy 1.
•
An FTP server at ftp.company.com, the user would be granted access by Policy 3. A single host name is
more specific than the IP address range configured in Policy 2.
Users > Local Users
This section provides an overview of the
Users > Local Users
page and a description of the configuration tasks
available on this page.
•
•
•
•
For global configuration settings, see
.
Users > Local Users Overview
The
Users > Local Users
page allows the administrator to add and configure users.
Local Users
The Local Users section allows the administrator to add and configure users by specifying a user name, selecting
a domain and group, creating and confirming password, and selecting user type (user, administrator, or read-
only administrator).
NOTE:
In this example, the user would not be able to access ftp.company.com using its IP address
10.0.1.3. The Secure Mobile Access policy engine does not perform reverse DNS lookups.
TIP:
When using Citrix bookmarks, in order to restrict proxy access to a host, a Deny rule must be
configured for both Citrix and HTTP services.
NOTE:
Users configured to use RADIUS, LDAP, or Active Directory authentication do not require passwords
because the external authentication server validates user names and passwords.