Chapter 32 User/Group
UAG5100 User’s Guide
334
User Type
These are the kinds of user account the UAG supports.
•
admin - this user can look at and change the configuration of the UAG
•
limited-admin - this user can look at the configuration of the UAG but not
to change it
•
ext-user - this user account is maintained in a remote server, such as
RADIUS. See
for more information about
this type.
•
ext-group-user - this user account is maintained in a remote server, such
as RADIUS. See
Ext-Group-User Accounts on page 326
for more
information about this type.
•
guest-manager - this user can log in via the web configurator login screen
and create dynamic guest accounts using the Account Generator screen
that pops up.
•
pre-subscriber - this user has access to the UAG’s services but cannot
look at the configuration.
Lease Time
This is the default lease time in minutes for each type of user account. It
defines the number of minutes the user has to renew the current session
before the user is logged out.
Admin users renew the session every time the main screen refreshes in the
Web Configurator. Access users can renew the session by clicking the Renew
button on their screen. If you allow access users to renew time automatically
(see
), the users can select this check box on their
screen as well. In this case, the session is automatically renewed before the
lease time expires.
Reauthentication Time
This is the default reauthentication time in minutes for each type of user
account. It defines the number of minutes the user can be logged into the UAG
in one session before having to log in again. Unlike Lease Time, the user has
no opportunity to renew the session without logging out.
Miscellaneous Settings
Allow renewing lease
time automatically
Select this check box if access users can renew lease time automatically, as
well as manually, simply by selecting the Updating lease time automatically
check box on their screen.
Enable user idle
detection
This is applicable for access users.
Select this check box if you want the UAG to monitor how long each access user
is logged in and idle (in other words, there is no traffic for this access user).
The UAG automatically logs out the access user once the User idle timeout
has been reached.
User idle timeout
This is applicable for access users.
This field is effective when Enable user idle detection is checked. Type the
number of minutes each access user can be logged in and idle before the UAG
automatically logs out the access user.
User Logon Settings
Limit number of
simultaneous logons for
administration account
Select this check box if you want to set a limit on the number of simultaneous
logins by admin users. If you do not select this, admin users can log in as many
times as they want at the same time using the same or different IP addresses.
Maximum number per
administration account
This field is effective when Limit number of simultaneous logons for
administration account is checked. Type the maximum number of
simultaneous logins by each admin user.
Limit number of
simultaneous logons for
access account
Select this check box if you want to set a limit on the number of simultaneous
logins by non-admin users. If you do not select this, access users can log in as
many times as they want as long as they use different IP addresses.
Maximum number per
access account
This field is effective when Limit number of simultaneous logons for
access account is checked. Type the maximum number of simultaneous logins
by each access user.
Table 148
Configuration > Object > User/Group > Setting (continued)
LABEL
DESCRIPTION