| Add Authentication Policy / Edit Authentication Policy |
To Add/Edit Authentication Policy.To add/edit Authentication Policy. |
Sample Configuration | |
---|---|
Parameter | Mandatory | Default | Description |
---|---|---|---|
Name | Yes | Enter a descriptive name for the Authentication Policy. Name confines to:
| |
Description | No | Enter a description or other information. | |
VirtualWebserverMode | Yes | Basic | Select how the users should authenticate at the Web Application Firewall. VirtualWebserverMode confines to:
|
BasicPrompt | No | The realm is a unique string that provides additional information on the login page and is used for user orientation. BasicPrompt confines to:
Applicable only if Mode is selected as 'Basic'.. | |
FormTemplate | No | Select the form template that will be presented to the users for authentication. FormTemplate confines to:
Applicable only if Mode is selected as 'Form'.. | |
SessionTimeout | No | User Session -> Session Timeout SessionTimeout confines to:
| |
SessionTimeoutLimit | No | ON | Enable to set a timeout for the user session, which will confirm user credentials by having them log in again if they do not perform any action. SessionTimeoutLimit confines to:
Applicable only if Mode is selected as 'Form'.. |
SessionTimeoutScope | No | Minutes | User Session -> Session Lifetime (Hours,Minutes,Days) SessionTimeoutScope confines to:
|
SessionLifetimeLimit | No | 8 Hours | Set a value for the session lifetime. SessionLifetimeLimit confines to:
Applicable only if 'Session Lifetime' is enabled.. |
SessionLifetime | No | ON | Enable to set a hard limit for how long users may remain logged in, regardless of activity in the meantime. SessionLifetime confines to:
|
SessionLifetimeScope | No | Hours | User Session -> Session Lifetime (Hours,Minutes,Days) SessionLifetimeScope confines to:
|
RealWebserverMode | Yes | Basic | Select how the Web Application Firewall authenticates against the web servers. RealWebserverMode confines to:
|
UsernameAffix | Yes | None | Select an affix for the username and enter it into the concerning field. UsernameAffix confines to:
Applicable only if Authentication Forwarding Mode is selected as 'Basic'.. |
RemoveBasicHeader | No | ON | Enable to not send the basic header from Sophos Firewall OS to the web server. RemoveBasicHeader confines to:
Applicable only if Authentication Forwarding Mode is selected as 'None'.. |
Prefix | No | Enter Prefix. Prefix will be added automatically if the user enters their username. Prefix confines to:
Applicable only if Username affix is selected as 'Prefix' or 'Prefix & Suffix'.. | |
Suffix | No | Enter Suffix. Suffix will be added automatically if the user enters their username. Suffix confines to:
Applicable only if Username affix is selected as 'Suffix' or 'Prefix & Suffix'.. | |
UserGroupList | No | Select the users or user groups that should be assigned to this Authentication Policy or create a new one. UserGroupList confines to:
|
Operation | Status | Message |
---|---|---|
Add Authentication Policy | 200 | |
Add Authentication Policy | 500 | |
Add Authentication Policy | 502 | |
Edit Authentication Policy | 200 | |
Edit Authentication Policy | 500 |