Netgear ProSafe SSL312 User Manual Page 44

  • Download
  • Add to my manuals
  • Print
  • Page
    / 122
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 43
NETGEAR ProSafe SSL VPN Concentrator 25 SSL312 Reference Manual
3-12 Authenticating Users
v2.0, May 2007
7. Check the Require CIFS bookmark to home directory radio box to automatically allow access
to users of this domain and add the home directory path in the field provided.
8. Click Apply to update the configuration. Once the domain has been added, the domain
displays in the table on the Domains screen
Troubleshooting Active Directory Authentication
If your users are unable to connect via Active Directory, verify the following:
1. The time settings between the Active Directory server and the SSL VPN Concentrator must be
synchronized. Kerberos authentication, used by Active Directory to authenticate clients,
permits a maximum of a 15-minute time difference between the Windows server and the client
(the SSL VPN Concentrator). The easiest way to solve this issue is to configure Network Time
Protocol on the Date and Time screen and check that the server’s time settings are also
correct.
2. Confirm that your Windows server is configured for Active Directory authentication. If you
are using a Window NT 4.0 server, then your server only supports NT Domain authentication.
Typically, Windows 2000 and 2003 servers are also configured for NT Domain authentication
to support legacy Windows clients.
Kerberos Authentication
Of all types of authentication, Kerberos authentication is the least error prone. Users that have
been defined in the Kerberos database can log into the SSL-VPN portal by entering their Kerberos
user name and password and selecting the new Kerberos authentication domain from the Domain
menu on the SSL VPN login page.
To configure Kerberos authentication:
1. From the Access Administration menu, select Domains. The Domains window will display.
Click Add Domains.
2. On the Add New Domain screen, select Kerberos from the Authentication Type drop-down
menu. The Kerberos configuration fields will display.
3. Enter a descriptive name for the authentication domain in the Domain Name field. Users will
select this domain when they log into the SSL VPN portal. It can be the same value as the
Server Address field or the Kerberos Domain field depending on your network configuration.
4. Enter the IP address or fully qualified domain name of the Kerberos server in the Server
Address field.
Page view 43
1 2 ... 39 40 41 42 43 44 45 46 47 48 49 ... 121 122

Comments to this Manuals

No comments