PC-Duo Gateway Server Guide
24
authenticate itself to the server. PC-Duo implements two types of authentication to
support this:
―Identity Authentication‖
―Endpoint Authentication‖
Identity Authentication
In general, this operation answers the following security question: How does the server
know who the client is? A PC-Duo application acting as a server will not provide access
or information to any PC-Duo
application acting as a client until it can validate that client‘s
identity. PC-Duo provides the server three different methods of authenticating the identity
of the PC-Duo client:
Connection
Windows
authentication
Simple
password
Shared-
secret
password
Peer-to-peer
Yes
Yes
No
Gateway-managed (Gateway & Host are in same domain)
Master-Gateway
relationship
Yes
No
No
Gateway-Host relationship
Yes
No
Yes
Gateway-managed (Gateway & Host are not in same domain)
Master-Gateway
relationship
Yes
No
No
Gateway-Host relationship
No
No
Yes
Windows authentication
: By default, a PC-Duo application acting as a server uses
Windows authentication to check the Windows credentials of the client application:
The Host will check the Windows credentials of the PC-Duo Master user in
the case of a peer-to-peer connection;
The Gateway will check the Windows credentials of the PC-Duo Master users
in the Master-Gateway part of a Gateway-managed connection;
The Host will check the Windows credentials of the user logged into the
Gateway in the Gateway-Host part of a Gateway-managed connection (when
Host and Gateway are in the same domain).
NOTE:
If Host and Gateway are not in the same domain, Windows authentication will not
usually be available. In that case, Host and Gateway will rely on Shared secret password.
Simple password
: Prior to making a connection, a custom password can be created
on the
Security
tab of the Host and shared with PC-Duo Master user. This feature permits
Содержание PC-Duo
Страница 43: ...Gateway Operation 43...
Страница 128: ...PC Duo Gateway Server Guide 128...