McAfee MAP-3300-SWG Product Guide - Page 246

Configuring Kerberos authentication using Active Directory 2003, Test Kerberos

Page 246 highlights

Overview of System features Users, Groups and Services Test (Kerberos) This dialog box allows you to test that the connection to your Kerberos server is working. Table 246 Option definitions Option Definition Username Enter a Kerberos user name to authenticate as (include the realm and delimiter character, if required) Password Enter the password for the Kerberos user that you entered in the Username box. Test Click Test to authenticate against the Kerberos server. If the request is successful, a green check mark and Authentication test succeeded is displayed. You will also see the Access-Accept response sent back from the Kerberos server in the Output box and any attributes returned. If the request fails, a warning icon and the message Authentication test failed is displayed. The error message returned from the Kerberos server is displayed in the Output field. Configuring Kerberos authentication using Active Directory 2003 This topic explains how to configure the appliance to use Kerberos authentication in a Microsoft Active Directory 2003 environment. It explains how to configure the appliance to authenticate users when they access the Internet. Before you begin This topic involves several pages of the interface. We recommend that you print the topic before starting the task. Alternatively, find this same topic in the Product Guide. • All authenticated users are allowed to access the Internet. • The appliance is configured in proxy mode. • All authenticated users' workstations, the Windows 2003 Active Directory Server, and the appliance have the same clock source such as a Network Time Protocol server. The appliance can also perform Kerberos authentication in a transparent mode. Browsers are configured to use transparent authentication using Kerberos with the appliance in a Windows 2003 Active Directory environment. 246 McAfee Email and Web Security Appliances 5.6.0 Product Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336

Test (Kerberos)
This dialog box allows you to test that the connection to your Kerberos server is working.
Table 246
Option definitions
Option
Definition
Username
Enter a Kerberos user name to authenticate as (include the realm and delimiter character, if
required)
Password
Enter the password for the Kerberos user that you entered in the
Username
box.
Test
Click
Test
to authenticate against the Kerberos server.
If the request is successful, a green check mark and
Authentication test succeeded
is displayed.
You will also see the Access-Accept response sent back from the Kerberos server in the
Output
box and any attributes returned.
If the request fails, a warning icon and the message
Authentication test failed
is displayed. The
error message returned from the Kerberos server is displayed in the
Output
field.
Configuring Kerberos authentication using Active Directory 2003
This topic explains how to configure the appliance to use Kerberos authentication in a Microsoft Active
Directory 2003 environment. It explains how to configure the appliance to authenticate users when
they access the Internet.
Before you begin
This topic involves several pages of the interface. We recommend that
you print the topic before starting the task. Alternatively, find this same
topic in the Product Guide.
All authenticated users are allowed to access the Internet.
The appliance is configured in proxy mode.
All authenticated users' workstations, the Windows 2003 Active Directory Server, and
the appliance have the same clock source such as a Network Time Protocol server.
The appliance can also perform Kerberos authentication in a transparent
mode. Browsers are configured to use transparent authentication using
Kerberos with the appliance in a Windows 2003 Active Directory
environment.
Overview of System features
Users, Groups and Services
246
McAfee Email and Web Security Appliances 5.6.0 Product Guide