12.07.2015 Views

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring SecurID Authentication6 To set how many connection attempts the Firebox makes, use the Retry value control to set thenumber you want.This is the number of times the Firebox tries to connect to the authentication server (using the time-out specifiedabove) before it reports a failed connection for one authentication attempt.7 To set the group attribute, use the Group Attribute value control to set the attribute you want.The group attribute value is used to set which attribute carries the <strong>User</strong> Group information. When the RADIUSserver sends a message to the Firebox that a user is authenticated, it also sends a <strong>User</strong> Group string; for example,“engineerGroup” or “financeGroup”. This information is then used for access control.8 To add a backup RADIUS server, select the Specify Backup RADIUS Server check box. If you selectthe check box, type the IP address and the port of the backup RADIUS server. The shared secretmust be the same on the primary and backup RADIUS server.9 Click OK.Configuring SecurID AuthenticationTo use SecurID authentication, you must configure RADIUS and ACE/Server servers correctly. The usersmust also have an approved SecurID token and a PIN (personal identification number). Refer to theSecurID instructions for more information.NoteDo not use Steel Belted RADIUS with SecurID. Use the RADIUS software application with RSA SecurIDsoftware.1 From Policy Manager, select Setup > Authentication Servers. Click the SecurID Server tab.2 In the IP Address box, type the IP address of the SecurID server.128 <strong>WatchGuard</strong> System Manager

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!