freeGuard 100 CLI User Manual
241
11 config
user
group
ldap
local
peer
peergrp
radius
11.1 group
Use this command to add or edit user groups.
To enable authentication, you must add user names, RADIUS servers and LDAP servers to one or
more user groups. You can then select a user group when you require authentication. You can select a
user group to configure authentication for:
•
Policies that require authentication.
Only users in the selected user group or users that can authenticate with the RADIUS or LDAP
servers added to the user group can authenticate with these policies.
•
IPSec VPN Phase 1 configurations for dialup users.
Only users in the selected user group can authenticate to use the VPN tunnel.
•
XAuth for IPSec VPN Phase 1 configurations.
Only users in the selected user group can be authenticated using XAuth.
•
The freeGuard 100 PPTP configuration.
Only users in the selected user group can use PPTP.
•
The freeGuard 100 L2TP configuration.
Only users in the selected user group can use L2TP.
When you add user names, RADIUS servers, and LDAP servers to a user group, the order in which
they are added determines the order in which the freeGuard 100 checks for authentication. If user
names are first, then the freeGuard 100 checks for a match with these local user names. If a match is
not found, the freeGuard 100 checks the RADIUS or LDAP server. If a RADIUS or LDAP server is
added first, the FreeGuard 100 checks the server and then the local user names.
If the user group contains user names, RADIUS servers, and LDAP servers, the freeGuard 100
checks them in the order in which they have been added to the user group.
Command syntax pattern
config user group
Summary of Contents for freeGuard 100
Page 1: ...freeGuard 100 UTM Firewall CLI USER S MANUAL P N F0025000 Rev 1 1...
Page 3: ......
Page 7: ......
Page 87: ...80 The config ips anomaly command has 1 subcommand config limit...
Page 183: ...176...