Barracuda Networks VERSION SP4 User Manual

Page 28

Advertising
background image

26 Server Config – Access Control Service

The pre-defined

Access Control Service Trustzones

can be referenced within the configuration dialogue

Virtual Servers

> <servername> >

Assigned Services

> <servicename>

(ACS)

>

Access

Control Service Settings

>

System Health-Validator

view >

Trustzone

section.

The Barracuda NG Control Center automatically links the Trustzone to the appropriate global / range
/ cluster object.

As mentioned in the introduction above, each trustzone contains three policy rule sets. There is a "local
machine" policy rule set that is used to determine a policy for a connecting machine if no user is
currently logged in. As soon as user authentication is requested by the connecting client, the "current
user" policy rule set is used for policy matching.

If the connection attempt is mediated by an intermittent VPN Service, then the VPN policy rule set
is adopted. More details are available in the introduction above.

Create an Access Control Server service within

Config

>

Box

>

Virtual Servers

>

<servername> >

Assigned Services

> <servicename>

(ACS)

).

Click

Access Control Service Trustzone

to open the configuration dialogue.

Fig. 2–8 Access Control Service Trustzone - Configuration dialogue

User authentication can be skipped by setting the the parameter "Access Control Service Settings" > User Authenti-
cation

> User Authentication Required to "No". Furthermore, local machine rule sets allow to skip user authentication

for a specific policy rule (

Policy Assignments > Exception > User Authentication Required

.

Advertising