Access Control 57
Groups can be manipulated within the system as single entities but remember that all operations on
the Group will affect all accounts within the Group. For example, an SSL tunnel resource can be
linked to a single Group and instantly every user within that Group will be granted access to the
attached resource..
Resources
A ‘Resource’ is defined as an application or data source. It sits at the other end of the access control
chain. Think of it as the endpoint, or objective that a user wishes to achieve. This could be something
as simple as a user accessing their email client to read their mail. In this case, the Resource would be
the email. Similarly, an intranet Web site would also be classed as a Resource – just as a network share
would be. All accessible stores of ‘informational value’ are deemed to be Resources under this
concept.
Policies
A ‘Policy’ is the glue by which all Principals and Resources can cohesively work together. As the
diagram below shows, the means by which a Principal entity has access to a Resource entity is through
the Policy and the means by which a Resource entity becomes accessible is again through the Policy.
Содержание SSL VPN
Страница 8: ...viii Barracuda SSL VPN Administrator s Guide...
Страница 34: ...34 Barracuda SSL VPN Administrator s Guide...
Страница 76: ...76 Barracuda SSL VPN Administrator s Guide...
Страница 94: ...94 Barracuda SSL VPN Administrator s Guide...
Страница 98: ...98 Barracuda SSL VPN Administrator s Guide...
Страница 104: ...104 Barracuda SSL VPN Administrator s Guide...
Страница 110: ...110 Barracuda SSL VPN Administrator s Guide...