427
Enabling remote access with clientless VPN
Using roles to assign rules to users
4
Click
OK
.
5
Optionally, do one of the following:
■
To save your configuration and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For further information related to this topic, see the following:
■
“Clientless VPN Role Properties—General tab”
■
Importing roles for groups
If you have an existing database of groups defined on an authentication server, you can import that
database for use by the security gateway. For example, group roles from an Active Directory or LDAP
server can be imported.
Complete the following procedure to import group roles. The database (the authentication or group
server) must be configured before importing roles.
Prerequisites
Complete the following task before beginning this procedure:
■
“Configuring user groups for internal and external authentication”
To import group roles
1
In the SGMI, in the left pane, under Policy, click
Clientless VPN
.
2
In the right pane, on the Roles tab, click
Import Roles
.
3
In the Import Roles dialog box, in the Authentication server drop-down menu, select the
authentication server on which the roles are defined.
4
Under Role type, click
Group
.
5
To import roles from a file, check
Import from file
and click the ellipsis (...) button to browse to the
file.
The user groups from the server appear in the role list with the following naming convention:
group_name:server_name:group.
Where:
■
group_name is the name of the user group as defined on the security gateway
■
server_name is the name of the server configured on the security gateway
6
Select the group(s) to import, and then click
OK
.
Name
Type a name for the new role.
Authentication
server
In the drop-down list, select the authentication server to use.
Parent role(s)
To specify the roles that serve as parent roles to the new role, do one of the following:
■
To add a parent role, click
Add
, select a parent role from the Role Selection dialog
box, and then click
OK
.
■
To remove a parent role, select the parent role, click
Remove
, and then click
OK
.
Client compliance
level
In the drop-down list, select the appropriate client compliance setting.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...