Operation
225
•
rsh-gw
Rsh proxy
•
tn-gw
TELNET proxy
User or Group
You can permit or deny access to certain proxies by user or group.
To control access by user or group:
1.
Add the operations attribute to your
authsrv
configuration specifying who can
perform the operation and what services they can access.
2. Add the
authenticate
attribute to the appropriate policy or proxy, requiring users to
autehnticate before using the service.
3. Add the
extended-permissions
attribute to the appropriate policy or proxy, indicating
that the authentication server should check information specified by the operations
keyword.
For example, Yoyodyne wants to permit only members of the group developer to use the
Rlogin proxy when accessing outside hosts:
55
authsrv:
permit-operation group developer rlogin-gw *
100
rlogin-gw:
authenticate *
101
rlogin-gw:
extended-permissions *
These commands prevent any other users who are not members of group developer (in
the Gauntlet authentication database) from using the Rlogin proxy.
Operation
You can permit or deny access to certain proxies by time of day:
To control access by time of day:
1.
Add the
operations
attribute to your
authsrv
configuration specifying who can
perform what operations, and what services they can access, and when.
2. Add the
authenticate
attribute to the appropriate policy or proxy, requiring users to
autehnticate before using the service.
Summary of Contents for Gauntlet
Page 1: ...Gauntlet for IRIX Administrator s Guide Document Number 007 2826 004 ...
Page 16: ......
Page 26: ......
Page 27: ...PART ONE Understanding the Gauntlet Internet Firewall I ...
Page 28: ......
Page 43: ...PART TWO Configuring and Using Proxies II ...
Page 44: ......
Page 50: ......
Page 56: ......
Page 64: ......
Page 72: ......
Page 94: ......
Page 109: ...PART THREE Administering General Gauntlet Firewall Services III ...
Page 110: ......
Page 140: ......
Page 147: ...Introductory Management Form 121 Figure 17 4 Gauntlet Introductory Management Form 2 of 3 ...
Page 155: ...Routing Configuration Form 129 Figure 17 8 Routing Configuration Form ...
Page 163: ...Proxy Servers Configuration Form 137 Figure 17 11 Proxy Servers Configuration Form 2 of 3 ...
Page 170: ...144 Chapter 17 The Graphical Management Interface Figure 17 13 DNS Configuration Form 1 of 2 ...
Page 171: ...DNS Configuration Form 145 Figure 17 14 DNS Configuration Form 2 of 2 ...
Page 177: ...Sendmail on Gauntlet Servers 151 Figure 17 15 Sendmail Configuration Form ...
Page 187: ...Logfiles and Reports Configuration Form 161 Figure 17 20 Reports and Logfiles Form 1 of 2 ...
Page 191: ...Authorizing Users Form 165 Figure 17 22 Authorizing Users Form ...
Page 192: ...166 Chapter 17 The Graphical Management Interface Figure 17 23 Add User Form ...
Page 214: ......
Page 232: ......
Page 233: ...Appendixes IV ...
Page 234: ......
Page 294: ......
Page 305: ......