McAfee MAP-3300-SWG Product Guide - Page 243

Add Login Service, Session Management Settings, User Login Notification

Page 243 highlights

Overview of System features Users, Groups and Services Table 237 Option definitions for creating Login services (continued) Option Realm Definition Displays the realm name. Kerberos realms are typically the domain name in uppercase letters. For example: EXAMPLE.COM. Role Determination Displays the type of user role for this service, either Local user or External user. Default Role Displays which role will be used by default if not overwritten on a per-users basis. Session Management Settings To prevent tampering while an administrator is away from the browser, you can configure the appliance interface to automatically close after a time. Table 238 Option definitions Option Definition Enable Session Management When selected, automatically closes the browser interface to the appliance after a specified time. To continue using the appliance, the administrator must type the user name and password again. By default, this option is selected. Timeout Default value is 10 minutes. User Login Notification Table 239 Option definitions Option Definition Display custom user notification When selected, displays a message that the user will see when logging on. To change the message, click Edit to open the Custom Text window. To restore the original message, click Reset in the Custom Text window. Add Login Service This topic describes the pages that enable you to configure authentication services, such as Kerberos or RADIUS, on your appliance. The Add Login Service dialog box is used to enable you to configure Kerberos or RADIUS authentication on your appliance. As you make choices during the configuration of these services, the relevant options are displayed. Table 240 Option definitions Option Service name Description (optional) Service Type Server address Definition User-defined name of the service for display purposes. An optional field for a description of the service. Select RADIUS or Kerberos, depending on the type of service you are adding. The host name or address of the RADIUS or Kerberos server, as applicable, to connect to. You can only connect to IPv4 RADIUS servers. McAfee Email and Web Security Appliances 5.6.0 Product Guide 243

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336

Table 237
Option definitions for creating Login services
(continued)
Option
Definition
Realm
Displays the realm name.
Kerberos realms are typically the domain name in uppercase letters. For example:
EXAMPLE.COM.
Role Determination
Displays the type of user role for this service, either
Local user
or
External user
.
Default Role
Displays which role will be used by default if not overwritten on a per-users basis.
Session Management Settings
To prevent tampering while an administrator is away from the browser, you can configure the
appliance interface to automatically close after a time.
Table 238
Option definitions
Option
Definition
Enable Session Management
When selected, automatically closes the browser interface to the appliance
after a specified time. To continue using the appliance, the administrator
must type the user name and password again.
By default, this option is selected.
Timeout
Default value is 10 minutes.
User Login Notification
Table 239
Option definitions
Option
Definition
Display custom user notification
When selected, displays a message that the user will see when logging on.
To change the message, click
Edit
to open the
Custom Text
window.
To restore the original message, click
Reset
in the
Custom Text
window.
Add Login Service
This topic describes the pages that enable you to configure authentication services, such as Kerberos
or RADIUS, on your appliance.
The
Add Login Service
dialog box is used to enable you to configure Kerberos or RADIUS authentication
on your appliance. As you make choices during the configuration of these services, the relevant
options are displayed.
Table 240
Option definitions
Option
Definition
Service name
User-defined name of the service for display purposes.
Description (optional)
An optional field for a description of the service.
Service Type
Select
RADIUS
or
Kerberos
, depending on the type of service you are adding.
Server address
The host name or address of the RADIUS or Kerberos server, as applicable, to
connect to.
You can only connect to IPv4 RADIUS servers.
Overview of System features
Users, Groups and Services
McAfee Email and Web Security Appliances 5.6.0 Product Guide
243