Admin Guide vii
Enabling domain logon scripts ........................................................................................................73
Enabling session time-out ................................................................................................................74
Setting Application Options .............................................................................................................74
Enabling Split DNS ..............................................................................................................................74
Enabling IP Pooling ............................................................................................................................74
Choosing a portal page for a group ................................................................................................75
Client certificate criteria configuration ..........................................................................................76
Global policies .....................................................................................................................................76
Configuring Resources for a User Group .......................................................................................77
Adding Users to Multiple Groups .....................................................................................................77
Allowing and denying network resources and application policies .........................................78
Defining network resources ..............................................................................................................78
Application policies ............................................................................................................................80
Configuring file share resources ......................................................................................................82
Configuring kiosk mode ....................................................................................................................82
End point resources and policies .....................................................................................................83
Configuring an end point policy for a group .................................................................................84
Setting the Priority of Groups ...........................................................................................................85
CHAPTER 7 Creating and Installing Secure Certificates ............................................................87
Generating a Secure Certificate for the Firebox SSL VPN Gateway .....................................87
Digital Certificates and Firebox SSL VPN Gateway Operation ...............................................88
Overview of the Certificate Signing Request ..............................................................................88
Creating a Certificate Signing Request ...........................................................................................88
Client Certificates ..................................................................................................................................89
To require client certificates ..............................................................................................................89
Requiring Certificates from Internal Connections .....................................................................90
To require server certificates for internal client connections ......................................................90
Wildcard Certificates ............................................................................................................................90
CHAPTER 8 Working with Client Connections ...............................................................................91
Using the Access Portal .......................................................................................................................91
To connect using the default portal page ......................................................................................92
Connecting from a Private Computer ............................................................................................93
ActiveX Helper .....................................................................................................................................93
Using the Secure Access Client Window .........................................................................................93
Connecting from a Public Computer ............................................................................................96
Using the Java Client ..........................................................................................................................96
The public session ...............................................................................................................................96
Working with File Share Resources ..................................................................................................97
Client Applications ................................................................................................................................97
To enable client applications ............................................................................................................97
Remote Desktop client .......................................................................................................................98
SSH Client .............................................................................................................................................98
Telnet 3270 Emulator Client .............................................................................................................98
VNC Client ............................................................................................................................................99
Gaim Instant Messenging .................................................................................................................99