EasyManua.ls Logo

SonicWALL SMA - Authentication Scenarios; Access Component Provisioning

SonicWALL SMA
48 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
SonicWall๎˜ƒSMA๎˜ƒConnect๎˜ƒTunnel๎˜ƒ12.0๎˜ƒDeployment๎˜ƒPlanning๎˜ƒGuide
Common๎˜ƒVPN๎˜ƒConfigurations
46
Providing๎˜ƒAccess๎˜ƒto๎˜ƒWindows๎˜ƒTerminal๎˜ƒServices๎˜ƒor๎˜ƒ
Citrix๎˜ƒResources
To๎˜ƒgive๎˜ƒusers๎˜ƒaccess๎˜ƒto๎˜ƒan๎˜ƒindividual๎˜ƒWindows๎˜ƒTerminal๎˜ƒServices๎˜ƒor๎˜ƒCitrix๎˜ƒhost,๎˜ƒor๎˜ƒa๎˜ƒCitrix๎˜ƒserver๎˜ƒ
farm:
1Install๎˜ƒor๎˜ƒupdate๎˜ƒthe๎˜ƒWindows๎˜ƒTerminal๎˜ƒServices๎˜ƒagent๎˜ƒor๎˜ƒthe๎˜ƒCitrix๎˜ƒagent๎˜ƒon๎˜ƒthe๎˜ƒConfigure๎˜ƒGraphical๎˜ƒ
Terminal๎˜ƒAgents๎˜ƒpage.
2Define๎˜ƒa๎˜ƒresource๎˜ƒon๎˜ƒthe๎˜ƒAdd/Edit๎˜ƒResource๎˜ƒpage๎˜ƒfor๎˜ƒthe๎˜ƒWindows๎˜ƒTerminal๎˜ƒServices๎˜ƒor๎˜ƒCitrix๎˜ƒhost,๎˜ƒor๎˜ƒ
the๎˜ƒCitrix๎˜ƒserver๎˜ƒfarm.๎˜ƒ
3Create๎˜ƒa๎˜ƒrule๎˜ƒon๎˜ƒthe๎˜ƒAdd/Edit๎˜ƒAccess๎˜ƒRule๎˜ƒpage๎˜ƒreferencing๎˜ƒthe๎˜ƒ
terminalโ€server๎˜ƒresource.
4Create๎˜ƒa๎˜ƒWorkPlace๎˜ƒshortcut๎˜ƒfor๎˜ƒaccessing๎˜ƒthe๎˜ƒWindows๎˜ƒTerminal๎˜ƒServices๎˜ƒhost๎˜ƒor๎˜ƒCitrix๎˜ƒresource๎˜ƒon๎˜ƒthe๎˜ƒ
Add/Edit๎˜ƒTerminal๎˜ƒShortcut๎˜ƒpage.
Authentication๎˜ƒScenarios
Realms๎˜ƒare๎˜ƒused๎˜ƒby๎˜ƒthe๎˜ƒappliance๎˜ƒfor๎˜ƒthe๎˜ƒfollowing๎˜ƒkey๎˜ƒpurposes:
โ€ข Referencing๎˜ƒexternal๎˜ƒauthentication๎˜ƒservers
โ€ข Provisioning๎˜ƒaccess๎˜ƒagents๎˜ƒto๎˜ƒVPN๎˜ƒusers,๎˜ƒbased๎˜ƒon๎˜ƒcommunity๎˜ƒmembership
โ€ข Determining๎˜ƒwhich๎˜ƒEnd๎˜ƒPoint๎˜ƒControl๎˜ƒrestrictions๎˜ƒare๎˜ƒimposed๎˜ƒon๎˜ƒusersโ€™๎˜ƒdevices
โ€ข Controlling๎˜ƒthe๎˜ƒuserโ€™s๎˜ƒlogin๎˜ƒexperience๎˜ƒat๎˜ƒa๎˜ƒWorkPlace๎˜ƒportal
Using๎˜ƒMultiple๎˜ƒRealms๎˜ƒvs.๎˜ƒa๎˜ƒSingle๎˜ƒRealm
If๎˜ƒyour๎˜ƒorganization๎˜ƒuses๎˜ƒonly๎˜ƒone๎˜ƒauthentication๎˜ƒserver,๎˜ƒyouโ€™ll๎˜ƒprobably๎˜ƒneed๎˜ƒto๎˜ƒconfigure๎˜ƒonly๎˜ƒone๎˜ƒrealm๎˜ƒin๎˜ƒ
AMC.๎˜ƒThere๎˜ƒare๎˜ƒother๎˜ƒsituations๎˜ƒin๎˜ƒwhich๎˜ƒmultiple ๎˜ƒauthentication๎˜ƒservers๎˜ƒare๎˜ƒrequired:
โ€ขMultiple๎˜ƒuser๎˜ƒrepositoriesโ€”If๎˜ƒyour๎˜ƒusers๎˜ƒare๎˜ƒstored๎˜ƒin๎˜ƒmultiple๎˜ƒdirectories,๎˜ƒyou๎˜ƒmust๎˜ƒcreate๎˜ƒa๎˜ƒseparate๎˜ƒ
realm๎˜ƒfor๎˜ƒeach๎˜ƒone.๎˜ƒFor๎˜ƒexample,๎˜ƒif
๎˜ƒyour๎˜ƒemployees๎˜ƒare๎˜ƒstored๎˜ƒon๎˜ƒan๎˜ƒLDAP๎˜ƒserver,๎˜ƒwhile๎˜ƒyour๎˜ƒbusiness๎˜ƒ
partners๎˜ƒare๎˜ƒstored๎˜ƒon๎˜ƒan๎˜ƒActive๎˜ƒDirectory๎˜ƒserver,๎˜ƒcreate๎˜ƒa๎˜ƒseparate๎˜ƒrealm๎˜ƒfor๎˜ƒeach๎˜ƒdirectory๎˜ƒserver.
โ€ขChained๎˜ƒauthenticationโ€”For๎˜ƒincreased๎˜ƒsecurity,๎˜ƒyou๎˜ƒcan๎˜ƒrequire๎˜ƒusers๎˜ƒto๎˜ƒauthenticate๎˜ƒto๎˜ƒa๎˜ƒsingle๎˜ƒrealm๎˜ƒ
using๎˜ƒtwo๎˜ƒdifferent๎˜ƒauthentication๎˜ƒmethods.๎˜ƒFor๎˜ƒexample,๎˜ƒyou๎˜ƒset๎˜ƒ
up๎˜ƒRADIUS๎˜ƒor๎˜ƒa๎˜ƒdigital๎˜ƒcertificate๎˜ƒas๎˜ƒthe๎˜ƒ
first๎˜ƒauthentication๎˜ƒmethod,๎˜ƒand๎˜ƒLDAP๎˜ƒor๎˜ƒActive๎˜ƒDirectory๎˜ƒas๎˜ƒthe๎˜ƒsecond๎˜ƒone.๎˜ƒTo๎˜ƒmake๎˜ƒthe๎˜ƒlogin๎˜ƒ
experience๎˜ƒfor๎˜ƒyour๎˜ƒusers๎˜ƒa๎˜ƒoneโ€step๎˜ƒprocess,๎˜ƒconfigure๎˜ƒAMC๎˜ƒsuch๎˜ƒthat๎˜ƒusers๎˜ƒsee๎˜ƒonly๎˜ƒone๎˜ƒset๎˜ƒof๎˜ƒ
prompts.
Access๎˜ƒComponent๎˜ƒProvisioning
All๎˜ƒof๎˜ƒthe๎˜ƒuser๎˜ƒaccess๎˜ƒcomponents๎˜ƒare๎˜ƒprovisioned๎˜ƒor๎˜ƒactivated๎˜ƒthrough๎˜ƒthe๎˜ƒWorkPlace๎˜ƒportal.๎˜ƒ
Optionally,๎˜ƒyou๎˜ƒcan๎˜ƒmake๎˜ƒthe๎˜ƒConnect๎˜ƒTunnel๎˜ƒclient๎˜ƒcomponents๎˜ƒavailable๎˜ƒfor๎˜ƒusers๎˜ƒto๎˜ƒdownload๎˜ƒand๎˜ƒinstall๎˜ƒfrom๎˜ƒ
another๎˜ƒnetwork๎˜ƒlocation๎˜ƒ(such๎˜ƒas๎˜ƒa๎˜ƒWeb๎˜ƒserver,๎˜ƒFTP๎˜ƒserver,๎˜ƒor๎˜ƒfile๎˜ƒserver),๎˜ƒwithout๎˜ƒrequiring๎˜ƒthem๎˜ƒto๎˜ƒlog๎˜ƒin๎˜ƒto
๎˜ƒ
WorkPlace.

Table of Contents

Related product manuals