版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
1、Mobile Access advanceChapterEnable MAB in a Security GatewayEnable the Blade in the GatewayEnable MAB in a Security GatewayDefine the clients allowed to reach the web services.Enable MAB in a Security GatewayA trusted CA can be directly imported from the wizardEnable MAB in a Security GatewayDefine
2、some basic ApplicationsEnable MAB in a Security GatewayImport users from an existing ADEnable MAB in a Security GatewayDefine initial authorized usersEnable MAB in a Security GatewayMobile Access PortalOne GW One Portal: Each Mobile Access enabled Security Gateway leads to its own Mobile Access user
3、 portal.Remote users log in to the portal using an authentication scheme configured for that Security GatewaySince R75, MAB can coexist with the SecurePlatform Configuration PortalMobile Access PortalMobile Access PortalDefine the URL by using:IP address orFDQNIf remote users enter http:/sslvpn, the
4、y will automatically be redirected to the portal using HTTPSPublic CA certificates can now be imported from the GUIDefine interfaces from which portal will be available.Authentication methodsInternal DBLDAPRADIUSACE (SecurID)CertificatesDynamicID (explained in detail later)Access to Applications Pol
5、iciesOnce remote users are authenticated (recognized and approved), Mobile Access allows the users to access the appropriate applications for that user. This process is called Authorization.Authorization is done by enforcing an access control policy in the Policy page of the Mobile Access tab. Remot
6、e users, once authenticated, can only access those applications that have been authorized for their groups. In other words, for access to be granted, Mobile Access checks for:Access rights - Does the remote user belong to a group which is allowed to access the application?Security requirements - Doe
7、s the remote user meet the security restrictions as defined in the applications Protection Level?Access to Applications PoliciesUsersApplicationsPortal Based ApplicationsProtection LevelsPredefined sets of security settings that offer a balance between connectivity and security.Mobile Access provide
8、s 3 default Protection Levels:Protection LevelsName and DescriptionProtection LevelsRequired Authentication MethodsProtection LevelsThis option allows access to the associated application only if the scanned client computer complies with the selected policyThis option requires Secure Workspace to be
9、 running on the client computerCompliance policies are defined under ESODEndpoint Compliance menuSupported ApplicationsWeb applications: set of URLs that are accessed in the same context and that is accessed via a Web browserFile shares: collection of files, made available across the network by mean
10、s of a protocol that enables actions on files.Citrix: client connectivity to internal XenApp servers.Web mail:Built-in Web mail: IMAP & SMTPOWA/iNotesWeb ApplicationsWeb ApplicationsName & descriptionSelect only if defining OWA or iNotes web accessWeb ApplicationsSingle Host (or Name)Multiple hostsA
11、llowed pathsAllowed servicesWeb ApplicationsThis option will add a visible link in the portal.Not enabling this option, will allow users to access the application bytyping its URL in the user portal, but will not have a pre-configured link to access it.Application Protection LevelUsers who have been
12、 authorized to the portal, are authorized to this application. This is the default option.Associate the Protection Level with the applicationControl information left on the clientsFile SharesTwo file share viewers area available:Web-based file viewerWindows explorer: only for IE 7 BrowsersFile Share
13、sTraking is limited to unsuccessfull access events by defaultSelect default file share viewerDefine the file share name, color and commentFile SharesTraking is limited to unsuccessfull access events by defaultSelect default file share viewerShares allowed to be accessedDefine the server(s) where the file share is File SharesTraking is limited to unsuccessfull access events by defaultSelect default file share v
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- T/CSPSTC 161-2025公路工程信息模型分类和编码技术规范
- T/CSA 090-2025深紫外LED加速寿命试验方法
- 餐饮业厨师长技术能力与创新成果绩效考评表
- 广告策划与客户服务部团队管理绩效评定表
- IT技术支持人员响应时间考核表
- 前端开发工程师页面性能绩效评定表
- 社区居民家庭纠纷调解方案
- 环保科技公司技术主管绩效考评表
- 导游安全知识考核试卷含答案
- 海盐制盐工班组建设知识考核试卷含答案
- 金融管理综合应用案例昌盛餐厅
- 2027届广州市天河区普通高中毕业班适应性训练作文题目解析及范文:长期规划是对未来的研判与谋划
- 2026年四川政府采购评审专家题库(含答案)
- 长春初中语文九上《短文两篇-孔子世家赞》
- 道路维修验收标准方案
- 2026-2030中国电解电容纸行业市场发展趋势与前景展望战略分析研究报告
- 机械气道廓清技术临床应用专家共识总结2026
- 足底疾病科普
- 嗜酸性肉芽肿性多血管炎诊治多学科专家共识(2025年版)解读
- CJ/T 192-2017内衬不锈钢复合钢管
- DB31/ 700-2013钢质冷模锻件单位产品能源消耗限额
评论
0/150
提交评论