Barracuda Networks SSL VPN 380 + 1Y EU+IR Specifications Page 28

  • Download
  • Add to my manuals
  • Print
  • Page
    / 96
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 27
1.
2.
3.
4.
5.
1.
2.
1.
2.
3.
4.
5.
6.
7.
8.
1.
2.
3.
and managed by the Barracuda SSL VPN. The module can be used as primary or secondary authentication mechanism. The administrator has to
generate a private and public key which is then uploaded to the Barracuda SSL VPN and stored on the users USB key device or home directory.
When you authenticate with a public key, the following steps are followed:
The Barracuda SSL VPN generates a random ticket (certificate)
The user selects the private key and enters the corresponding passphrase.
The ticket is signed with the users private key and sent to the Barracuda SSL VPN.
The Barracuda SSL VPN uses checks if the signed ticket is valid with its public key.
If the check was successful, the user is logged in.
In this article:
Step 1. Create or Modify the Authentication Scheme
Step 2. Configure Key Authentication Settings
Step 3. Generate Keys
Creation and Distribution by Administrator
Creation by Users on Login
Step 1. Create or Modify the Authentication Scheme
To use the public key authentication create or modify the authentication scheme and add the module to thePublic Key Authentication
configuration. If you want users to generate their own initial public keys, the public key authentication module will query the users password to
authenticate them before generating the new keys.
Step 2. Configure Key Authentication Settings
Configure the key authentication module:
Open the page.Manage System > RESOURCES > Security Settings
In the section, configure the following settings: Key Authentication
Allow user to create initial authentication key
Enforce Password Security Policy
Step 3. Generate Keys
There are two ways the keys can be generated:
Creation and Distribution by Administrator
The administrator can initialize the key for a user:
Open the page.Manage System > ACCESS CONTROL > Accounts
Click on the link for the user you want to generate the key for.More
Select . Generate Authentication Key
Enter the . The Administrator can require the passphrase to conform to the password security policy.Passphrase
Click . Generate
Download the zip file..
Click .Close
Distribute the key stored in the zip file to the individual user. Barracuda Networks recommends using a USB key for greater security.
Creation by Users on Login
The administrator can also reset the Authentication key, forcing the user to generate a new key at the next login. The user must enter his system
password when generating the new key.
Open the page. Manage System > ACCESS CONTROL > Accounts
In the section, locate the individual user who should create the authentication key and click .Accounts More
Select . Reset Authentication Key
On the next log in the user will be asked to enter his password and a new passphrase. The Barracuda SSL VPN will then generate a zip file
containing the authentication key, which the user can download.
How to Configure SSL Client Certificate Authentication
SSL client certificates are a very secure secondary authentication method. When this feature is enabled, users can provide an SSL client
certificate, but it is not required by the server. During users' initial login, they must install the SSL client certificate into the certificate store of the
Page view 27
1 2 ... 23 24 25 26 27 28 29 30 31 32 33 ... 95 96

Comments to this Manuals

No comments