Table of contents
WELCOME 11
Recommendations on the operating
environment 11
Introduction 11
Security watch 12
Physical security measures 12
Organizational security measures 12
Human media 13
IT security environment 13
User awareness 15
Administrator management 15
User password management 16
Work environment 17
User access management 17
ACCESS PRIVILEGES 19
“Default options” tab 19
SSL VPN Portal 19
IPSEC 19
SSL VPN 19
Sponsorship 20
“Detailed access” tab 20
Possible operations 20
Configuration table 20
“PPTP” tab 22
ACTIVE UPDATE 23
Automatic updates 23
Advanced configuration 23
Update servers 23
Update servers of the Stormshield
Network URL database 23
AUDIT LOGS 24
Collaborative security 24
Storage device: SD Card 24
Logs 25
Possible operations 25
Interactions 27
Views 28
Logs 29
ADMINISTRATORS 31
“Administrators” tab 31
Possible operations 31
Table of privileges 32
“Administrator account” tab 34
ANTISPAM 36
“General” tab 36
Page 2/448 sns-en-user_configuration_manual-v3 - Copyright © Stormshield 2016
SNS - USER CONFIGURATION MANUAL V.3
SMTP parameters 36
Advanced properties 37
“Whitelisted domains” tab 38
“Blacklisted domains” tab 38
ANTIVIRUS 40
Antivirus engine 40
Parameters 40
Analysis of ClamAV files 40
Analysis of Kaspersky files 40
APPLICATIONS AND PROTECTIONS 41
View by inspection profile 41
Selecting the configuration profile 41
The various columns 43
View by context 44
AUTHENTICATION 46
“Available methods” tab 46
Authentication methods 46
“Authentication policy” tab 53
Actions on the rules of the authentication
policy 53
New rule 54
"Captive portal" tab 55
Captive portal 55
SSL server 56
Conditions of use for Internet access 56
Advanced properties 56
“Internal interfaces” and “External
interfaces” tabs 57
User passwords 57
Authentication periods allowed 57
Advanced properties 57
Transparent or explicit HTTP proxy and
multi-user objects 59
Multi-user objects 59
Transparent proxy (implicit) 59
Explicit proxy 60
BLOCK MESSAGES 61
Antivirustab 61
POP3 protocol 61
SMTP protocol 61
FTP protocol 61
“HTTP block page” tab 61
Block page tabs 62
Editing block pages 62
CERTIFICATES AND PKI 64
Possible operations 64
Search bar 64