Dell SonicWALL Secure Mobile Access 8.5
Administration Guide
147
Secure Mobile Access Virtual Office portal. The certificate hostname mismatch affects the login page,
NetExtender, and Secure Virtual Access/Assist/Meeting clients; Other Secure Mobile Access client
applications are not affected by a hostname mismatch.
To achieve a single point of access for users, configure External Website Bookmarks for application
offloading portals by selecting
Enable Virtual Host Domain SSO
to enable cross domain Single Sign-On
(SSO). Cross Domain SSO shares the credentials for all portals in the same shared domain. Enabling
Virtual Host Domain SSO automatically sets the Shared Domain Name one level up from the Virtual Host
Domain name and displays it in the
Shared
Domain Name
field. For example, the Shared Domain Name
is example.com if the Virtual Host Domain is webmail.example.com.
9 Under the
Advanced SSL/TLS settings
section, the Enforce Forward Secrecy field allows you to:
Use
Global Setting
,
Enable
, or
Disable
the feature. Enable this option to allow current information to be
kept in secrecy, even if the private key is compromised in the future. Note that browsers that do not
support Forward Secrecy might not be able to connect to the SMA/SRA appliance. The performance of
this feature can decline depending on the ciphers that the client browser supports.
10
Verify Backend SSL Server Certificate for Proxy connections
— When this option is enabled, the
connection is dropped if the backend SSL/TLS server certificate is not trusted. The verification depth is
10. Alert level log messages are also generated when this option is enabled.
11 Enable
Force SSL/TLS version for Proxy connections
to enable communication between the Virtual
Host and the Backend Server.
Adding a Custom Portal Logo
The Custom Logo Settings section allows the administrator to upload a custom portal logo and to toggle
between the default Dell SonicWALL logo and a custom uploaded logo. You can also upload a custom portal
favicon in this section. You must add the portal before you can upload a custom logo or custom favicon. In the
Add Portal screen, the Logo tab does not have an option to upload a custom logo or custom favicon.
NOTE:
In previous releases, users had to log in twice – once for the regular portal and once
for the application offloading portal after External Website Bookmark redirection. The
Cross Domain SSO feature allows users after logging into the main portal to automatically
log in to application offloading portals or Web sites that share the same Virtual Host
Domain.
NOTE:
A Logo or Favicon can also be customized for OWA access.