440
Enabling remote access with clientless VPN
Enabling single sign-on for remote users
To create a single sign-on rule
1
In the SGMI, in the left pane, under Policy, click
Clientless VPN
.
2
In the right pane, on the Single Sign-On tab, click
New
.
3
In the Single Sign-On Rule Properties dialog box, on the General tab, do the following:
4
Click
OK
.
5
To activate single sign-on for Web VPN connections, In the left pane, click
Policy Parameters
.
6
In the right pane, in the Policy Parameters window, under Web VPN, check
Single sign-on
.
7
Optionally, do one of the following:
■
To save your configuration and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For further information related to this topic, see the following:
■
“Single Sign-on Rule Properties—General tab”
■
“Single Sign-on Rule Properties—Add Variable dialog box”
■
Deleting user sign-on data
To disable the single sign-on feature, an authenticated user can delete sign-on information stored by
the security gateway. This might be done if the user password or the resources being accessed changed
or were compromised. The user cannot selectively delete sign-on information. The user can only delete
all accumulated sign-on information.
Rule name
Type a unique name to identify the single sign-on rule.
Logon URL
Type the URL of the HTML page that allows remote users to log on and access the
resource.
Authentication URL
Type the URL that handles the authentication data from the logon page.
Authentication
method
Select the authentication method defined on the logon page.
Failed method
Type the URL to which users are redirected if the authentication fails.
Capture all
authentication
variables
To collect all authentication variables, check this option. This option is checked by
default.
Capture only the
following
To specify the authentication variables to capture, check this option.
To populate the Variable Name table, do the following:
1
Click
Add.
2
In the Add Variable dialog box, in the Variable name text box, type a name for the
variable.
3
In the Variable type drop-down list, select the variable type.
4
Click
OK
.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...