| | Add Authentication Policy / Edit Authentication Policy |
| To Add/Edit Authentication Policy.To add/edit Authentication Policy. |
| Sample Configuration | |
|---|---|
| Parameter | Mandatory | Default | Description |
|---|---|---|---|
| Name | Yes | Enter a descriptive name for the Authentication Policy. Name confines to:
| |
| Description | No | Enter a description or other information. | |
| VirtualWebserverMode | Yes | Basic | Select how the users should authenticate at the Web Application Firewall. VirtualWebserverMode confines to:
|
| BasicPrompt | No | The realm is a unique string that provides additional information on the login page and is used for user orientation. BasicPrompt confines to:
Applicable only if Mode is selected as 'Basic'.. | |
| FormTemplate | No | Select the form template that will be presented to the users for authentication. FormTemplate confines to:
Applicable only if Mode is selected as 'Form'.. | |
| SessionTimeout | No | User Session -> Session Timeout SessionTimeout confines to:
| |
| SessionTimeoutLimit | No | ON | Enable to set a timeout for the user session, which will confirm user credentials by having them log in again if they do not perform any action. SessionTimeoutLimit confines to:
Applicable only if Mode is selected as 'Form'.. |
| SessionTimeoutScope | No | Minutes | User Session -> Session Lifetime (Hours,Minutes,Days) SessionTimeoutScope confines to:
|
| SessionLifetimeLimit | No | 8 Hours | Set a value for the session lifetime. SessionLifetimeLimit confines to:
Applicable only if 'Session Lifetime' is enabled.. |
| SessionLifetime | No | ON | Enable to set a hard limit for how long users may remain logged in, regardless of activity in the meantime. SessionLifetime confines to:
|
| SessionLifetimeScope | No | Hours | User Session -> Session Lifetime (Hours,Minutes,Days) SessionLifetimeScope confines to:
|
| RealWebserverMode | Yes | Basic | Select how the Web Application Firewall authenticates against the web servers. RealWebserverMode confines to:
|
| UsernameAffix | Yes | None | Select an affix for the username and enter it into the concerning field. UsernameAffix confines to:
Applicable only if Authentication Forwarding Mode is selected as 'Basic'.. |
| RemoveBasicHeader | No | ON | Enable to not send the basic header from Sophos Firewall OS to the web server. RemoveBasicHeader confines to:
Applicable only if Authentication Forwarding Mode is selected as 'None'.. |
| Prefix | No | Enter Prefix. Prefix will be added automatically if the user enters their username. Prefix confines to:
Applicable only if Username affix is selected as 'Prefix' or 'Prefix & Suffix'.. | |
| Suffix | No | Enter Suffix. Suffix will be added automatically if the user enters their username. Suffix confines to:
Applicable only if Username affix is selected as 'Suffix' or 'Prefix & Suffix'.. | |
| UserGroupList | No | Select the users or user groups that should be assigned to this Authentication Policy or create a new one. UserGroupList confines to:
|
| Operation | Status | Message |
|---|---|---|
| Add Authentication Policy | 200 | |
| Add Authentication Policy | 500 | |
| Add Authentication Policy | 502 | |
| Edit Authentication Policy | 200 | |
| Edit Authentication Policy | 500 |