Saturday, May 30, 2015

Local Firewall Authentication Based Access


     
Scenario: We have to configure firewall such that only user which get authenticate via local firewall authentication can access the internet.
Step1>
We first need to configure the basic LAN and WAN settings on the firewall.


Step2>
 We need to create the users. To do so go to,
Usersà Localà  Click on Create New and enter the following details
Click on OK
Similarly we can define multiple users.

Step3>
Now we need to create a group.
To do so go to,
Userà User Groupà Click on Create New and enter the following.
Then Click on OK

Step4>
Now we need to edit the default internal to wan1 policy. To do so go to,
Firewallà Policyà Click on edit for the default policy
Check the option of Enable Identity Based Policy and then click on Add
From available user groups select which members you want to give access and select which services you want to allow and schedule as always
Then click on OK and also OK on the main policy screen.
Now if anyone tries to access the internet it will ask for authentication, attached below is the screenshot.
And then once you enter the username and password it will give you the following message and then allow you to access the internet.


NOTE: Once we have logged in and there is not activity then by default the session will time out in 5 minutes.
If we want to increase the timeout duration we need to go to,
Userà Options

Here we can change the time limit ranging from 1 minute to 480 minutes.

No comments :

Post a Comment