
Installation and Operation Manual Chapter 4 Configuration
Egate-100 Ver. 4.0 Configuring Egate-100 for Management 4-21
Secure Managers Only – Network managers listed in the manager list and
using an SSL connection are enabled.
Disable – Web access is disabled.
Defining Access Policy
Access policy allows configuration of multiple authentication protocols. User
authentication is performed in the order the methods are selected. If the first
authentication method is not available or the user is not found, the next selected
method is used.
³ To define the access policy:
1. Navigate to Main Menu > Configuration > System > Management, and then
select Access Policy.
The Access Policy menu appears.
2. Choose the desired option to configure the first level of authentication
(1st Level) as listed below:
Local – Egate-100 uses the locally stored authentication database.
Radius – Egate-100 uses the authentication database stored on the
Radius server.
2nd Level becomes available. If the user name is not found in the Radius
Server database or the password you enter does not match the user
name, the authentication fails.
3. Choose the desired option to configure the second level of authentication
(2nd Level) as listed below:
None – Egate-100 is only accessible via the 1st level.
Local – Egate-100 uses the locally stored authentication database.
Special rules apply to su (superuser). If su does not exist in the Radius server
database or the system loses the connection to the Radius server, Egate-100
uses the local authentication database to authenticate the user if the 2nd level is
set to local.
Configuring User Access
Users with different access levels can access Egate-100 to make configuration
changes.
There are three access levels:
• su. Read and write access including administrator privileges that include
adding and removing of other users as well as changing passwords for other
users.
• tech. Read and limited write access. The password of this user can be
changed by this user.
• user. Read-only access. This user allows you to view and only modify basic
parameters. You are able to change the password for this user.
Note
Komentáře k této Příručce