Add a group

  1. Go to Authentication > Groups and click Add.
  2. Enter a name.
  3. Select a type.
    OptionDescription
    Normal Require users to log on using a device with a client component.
    Clientless Do not require users to log on using a client. Access control is performed through the IP address.
  4. Select the policies.
    Note Policies specified at the user level take precedence over those specified at the group level.
    OptionDescription
    Surfing quota Access based on a defined period and type. This policy can include a cycle type, hours, validity, and maximum hours.
    Access time Access or denial based on a defined recurring period.
    Network traffic Access based on bandwidth usage.
    Traffic shaping Access based on QoS traffic shaping policy. This policy can include a policy association, priority, and specific limits for uploading and downloading.
  5. Specify the remote access VPN settings:
    OptionDescription

    SSL VPN policy

    Remote access SSL VPN policy assigned to the group or user. If you haven't selected a policy, the group's policy applies to the user.

    Clientless SSL VPN policy

    Allows access to bookmarked resources through a browser.

    L2TP

    Allow access using L2TP. Optionally, specify an IP address to be leased to the user for L2TP access.

    PPTP

    Allow access using PPTP. Optionally, specify an IP address to be leased to the user for PPTP access.

  6. Specify the other settings.
    Note Settings specified at the user level take precedence over those specified at the group level.
    OptionDescription
    Quarantine digest Send a list of the email messages held in the quarantine in digest form.
    MAC binding Require users to log on through specified devices.
    Sign-in restriction Allow access from the specified nodes. You can specify no restriction (any node), named nodes, or a node range.
  7. Click Save.