Chapter 10: Creating Aliases and Implementing Authentication
162
WatchGuard Firebox System
N
OTE
Because usernames are bound to IP addresses, user
authentication is not recommended for use in an environment
with shared multiuser machines (such as Unix, Citrix, or NT
terminal servers), because only one user per shared server
can be authenticated at any one time.
The Firebox allows you to define permissions and groups
using user names rather than IP addresses. This system
allows for situations where users may use more than one
computer or IP address. Tracking activities by user rather
than IP is especially useful on networks using DHCP
where a user workstation may have several different IP
addresses over the course of a week. Authentication by
user is also useful in education environments, such as
classrooms and college computer centers where many dif-
ferent people might use the same IP address over the
course of the day. For more information on authentication,
see the following collection of FAQs:
https://support.watchguard.com/advancedfaqs/auth_main.asp
Using Aliases
Aliases provide a simple way to remember host IP
addresses, host ranges, and network IP addresses. They
function in a similar fashion to email distribution lists–
combining addresses and names into easily recognizable
groups. Use aliases to quickly build service filter rules.
Aliases cannot, however, be used to configure the network
itself.
WatchGuard automatically adds six aliases to the basic
configuration:
Summary of Contents for Firebox X10E
Page 1: ...WatchGuard Firebox System User Guide WatchGuard Firebox System ...
Page 12: ...xii WatchGuard Firebox System ...
Page 44: ...Chapter 2 Service and Support 22 WatchGuard Firebox System ...
Page 61: ...Cabling the Firebox User Guide 39 ...
Page 68: ...Chapter 3 Getting Started 46 WatchGuard Firebox System ...
Page 78: ...Chapter 4 Firebox Basics 56 WatchGuard Firebox System ...
Page 156: ...Chapter 8 Configuring Filtered Services 134 WatchGuard Firebox System ...
Page 182: ...Chapter 9 Configuring Proxied Services 160 WatchGuard Firebox System ...
Page 220: ...Chapter 11 Intrusion Detection and Prevention 198 WatchGuard Firebox System ...
Page 242: ...Chapter 12 Setting Up Logging and Notification 220 WatchGuard Firebox System ...
Page 256: ...Chapter 13 Reviewing and Working with Log Files 234 WatchGuard Firebox System ...
Page 274: ...Chapter 14 Generating Reports of Network Activity 252 WatchGuard Firebox System ...