PineApp Surf-SeCure Quick



Similar documents
Getting Started Guide

Upgrading User-ID. Tech Note PAN-OS , Palo Alto Networks, Inc.

F-Secure Messaging Security Gateway. Deployment Guide

Installing and configuring Microsoft Reporting Services

Field Description Example. IP address of your DNS server. It is used to resolve fully qualified domain names

Quick Start Guide. Sendio System Protection Appliance. Sendio 5.0

How To - Implement Single Sign On Authentication with Active Directory

Flexible Identity. LDAP Synchronization Agent guide. Bronze. version 1.2

How To - Implement Clientless Single Sign On Authentication in Single Active Directory Domain Controller Environment

Configuring Sponsor Authentication

V Series Rapid Deployment Version 7.5

Configuring User Identification via Active Directory

Click Studios. Passwordstate. Installation Instructions

Savvius Insight Initial Configuration

Smart Card Authentication Client. Administrator's Guide

Integrating VMware Horizon Workspace and VMware Horizon View TECHNICAL WHITE PAPER

Virtual Appliance Setup Guide

Steps for Basic Configuration

Alert Notification of Critical Results (ANCR) Public Domain Deployment Instructions

Managing Qualys Scanners

PineApp Archive-Secure Quick Installation Guide:

Setting up VMware ESXi for 2X VirtualDesktopServer Manual

Virtual Appliance Setup Guide

iboss Enterprise Deployment Guide iboss Web Filters

BlackBerry Enterprise Service 10. Universal Device Service Version: Administration Guide

IIS, FTP Server and Windows

User Identification and Authentication

Click Studios. Passwordstate. Installation Instructions

Network Load Balancing

CLEO NED Active Directory Integration. Version 1.2.0

Smart Card Authentication. Administrator's Guide

Contents. Introduction. Prerequisites. Requirements. Components Used

Basic Configuration. Key Operator Tools older products. Program/Change LDAP Server (page 3 of keyop tools) Use LDAP Server must be ON to work

Active Directory integration with CloudByte ElastiStor

Active Directory Requirements and Setup

1 You will need the following items to get started:

Integrating LANGuardian with Active Directory

Enterprise Apple Xserve Wiki and Blog using Active Directory. Table Of Contents. Prerequisites 1. Introduction 1

NetBrain Discovery Appliance Manual

NSi Mobile Installation Guide. Version 6.2

Configuring and Using the TMM with LDAP / Active Directory

Here, we will discuss step-by-step procedure for enabling LDAP Authentication.

Active Directory Integration

Installing and Configuring vcloud Connector

Copyright 2012 Trend Micro Incorporated. All rights reserved.

Configuring Thunderbird for Flinders Mail at home.

Deploying F5 with Microsoft Active Directory Federation Services

Active Directory 2008 Implementation. Version 6.410

Delegated Administration Quick Start

Dynamic DNS How-To Guide

Configuring the Cisco ISA500 for Active Directory/LDAP and RADIUS Authentication

Windows 2000 Active Directory Configuration Guide

How To Configure A Bomgar.Com To Authenticate To A Rdius Server For Multi Factor Authentication

8.7. NET SatisFAXtion Gateway Installation Guide. For NET SatisFAXtion 8.7. Contents

PriveonLabs Research. Cisco Security Agent Protection Series:

OneLogin Integration User Guide

Setting Up Scan to SMB on TaskALFA series MFP s.

Siteminder Integration Guide

Virtual Web Appliance Setup Guide

Sentral servers provide a wide range of services to school networks.

Security Provider Integration RADIUS Server

How to Join QNAP NAS to Microsoft Active Directory (AD)

NetIQ Advanced Authentication Framework - MacOS Client

Install FileZilla Client. Connecting to an FTP server

Cisco CallManager configuration for BLU-103

Professional Mailbox Software Setup Guide

Note: With v3.2, the DocuSign Fetch application was renamed DocuSign Retrieve.

Professional Mailbox Software Setup Guide

Virtual Managment Appliance Setup Guide

The following process allows you to configure exacqvision permissions and privileges for accounts that exist on an Active Directory server:

NETASQ ACTIVE DIRECTORY INTEGRATION

Configuring SSL VPN on the Cisco ISA500 Security Appliance

Configuration Task 3: (Optional) As part of configuration, you can deploy rules. For more information, see "Deploy Inbox Rules" below.

How To Authenticate An Ssl Vpn With Libap On A Safeprocess On A Libp Server On A Fortigate On A Pc Or Ipad On A Ipad Or Ipa On A Macbook Or Ipod On A Network

DRO-210i LOAD BALANCING ROUTER. Review Package Contents

Sophos UTM Web Application Firewall for Microsoft Exchange connectivity

Test Case 3 Active Directory Integration

NetBoot/SUS Appliance User Guide. Version 1.0

Step-by-Step Setup Guide Wireless File Transmitter FTP Mode

1. Open Thunderbird. If the Import Wizard window opens, select Don t import anything and click Next and go to step 3.

How to Configure NetScaler Gateway 10.5 to use with StoreFront 2.6 and XenDesktop 7.6.

NETASQ SSO Agent Installation and deployment

Using Internet or Windows Explorer to Upload Your Site

Exchange 2013 mailbox setup guide

DESKTOP CLIENT CONFIGURATION GUIDE BUSINESS

CYAN SECURE WEB HOWTO. NTLM Authentication

Using LDAP for User Authentication

Managed Security Web Portal USER GUIDE

Installing and Configuring vcloud Connector

Skyward LDAP Launch Kit Table of Contents

Step-by-Step Setup Guide Wireless File Transmitter FTP Mode

Alcatel-Lucent Extended Communication Server Active directory synchronization : installation and administration

LDAP Implementation AP561x KVM Switches. All content in this presentation is protected 2008 American Power Conversion Corporation

Setting Up a Backup Domain Controller

LDAP User Guide PowerSchool Premier 5.1 Student Information System

To enable an application to use external usernames and passwords, you need to first configure CA EEM to use external directories.

Managing the System Event Log

Setting up Citrix XenServer for 2X VirtualDesktopServer Manual

Configuring Thunderbird with UEA Exchange 2007:

How to Configure Active Directory based User Authentication

Transcription:

PineApp Surf-SeCure Quick Installation Guide September 2010

WEB BASED INSTALLATION SURF-SECURE AS PROXY 1. Once logged in, set the appliance s clock: a. Click on the Edit link under Time-Zone section. OUR INNOVATION YOUR SECURITY b. Choose your current time zone from the Time Zone dropdown list in the pane. c. Click on Set time zone button. 2. Go to Networking > General tab, and set up new DNS server(s): a. Click on the Add new DNS link. A new pane will appear on the right hand side of the screen. b. DNS Type the DNS server s IP address c. Click on the Add DNS button. 3. Set up a new hostname, by clicking on the Edit link. Inside the Host Name text field, type the appliance s FQDN (Fully Qualified Domain Name), and click on Update Hostname button. 4. Go to Networking > Interfaces tab, and choose Proxy only from the above Working Mode menu. Click on Save changes and Apply Settings to finalize the decision. 5. In Networking > Interfaces, set up a new interface. a. Choose the interface you wish to assign and click on the Add new IP link next to it. b. IP Type the requested IP address for the interface. c. Subnet Mask Choose the proper subnet mask for the interface from the dropdown list. d. Click on the Add New IP button. Once done, connect the assigned interface s port to the firewall, using a network cable. 6. Go to Routes tab and set up a new default route: a. Click on the Edit link. b. Click on the Update default route button. If you do not want to use authentication or to enable policy per group/user, please skip steps 7 & 8. 7. Go to Authentication > LDAP and Click on the Edit link next to the existing default parameter. Fill in the information according to the below table.

Synchronize User & Group database from LDAP LDAP server type LDAP Synchronization Interval LDAP Server LDAP Bind DN LDAP Server Hostname (optional) LDAP port (389=common, 3265=Global catalog) LDAP Context LDAP Password Check box to activate module. Choose the type of the LDAP server from the list. Choose the synchronization intervals to the LDAP server from the menu. Enter the LDAP server s IP address Enter the Branch that has searching privileges in the tree. Example: administrator@pineapp.com. Enter the LDAP server s Hostname (optional). If you are not using the default LDAP port (389), type the port you are using to synchronize the LDAP server. Enter the Root Branch definition. For example, if the domain is pineapp.com, type: dc=pineapp, dc=com (There must be a space between the comma and dc ). Pressing the Fetch DNs button will cause the different DNs that are available on the specific Active directory to pop up. Make sure you have defined the IP of the LDAP server, Bind DN and password before pressing it. Enter the Password of the Administrator. 8. Go to Authentication > NTLM tab, and set up NTLM authentication: a. Enable NTLM Click once on this icon in order to activate the NTLM feature. b. User type a username which has permissions to add workstations to domain and is member in Build-In security group: Windows Authorization Access Group. c. Password Type the username s corresponding password d. Server Name & Domain See appendix C for further details. e. Click on the Save button. 9. In case you wish to assign policy rules for specific object groups of any sort, you will first have to configure object lists.

Creating Object lists OUR INNOVATION YOUR SECURITY Creating Object lists is done be choosing Add new object lists link from the section. a. Type a list name and description (optional). b. Click the Save button. Creating Objects a. Choose from the drop-down menu the type of object you wish to create (IP, Domain, URL and Network). b. Type the IP (or URL, Domain or network according to the type of object you wish to add) and description (optional). c. Click the Save button. 10. In order to add objects to the list, click on the group name, choose the objects you wish to add and click on the Add button. 11. Configure policy rules, according to the instructions on chapter 5 of Surf-SeCure user manual. 12. In order to receive real-time alerts from the system, go to System->Maintenance tab, and type the system administrator s email address in the input text field.

WEB BASED INSTALLATION SURF-SECURE AS BRIDGE 1. Repeat steps 1-3 from the previous section. OUR INNOVATION YOUR SECURITY 2. Go to Networking > Interfaces tab, and edit IP address info for br0: a. Click on the Edit link next to the br0 record. b. IP Type the requested IP address for the interface. c. Subnet Mask Choose the proper subnet mask for the interface from the dropdown list. d. Click on the Update device button. 3. Go to Routes tab and set up a new default route: c. Click on the Edit link. d. Click on the Update default route button. 4. Repeat steps 8-10 from the previous section, in order to configure new object lists and policy rules. 5. In order to receive real-time alerts from the system, go to System->Maintenance tab, and type the system administrator s email address in the input text field. BACKING UP THE CONFIGURATION Once configure, it is highly recommended that you back up your configuration ( System > Configuration Management ). To backup the configurations, type in the name of the file to create and click the Backup button. After a few seconds, the file will be listed in the stored configuration table (A green successful message will appear). To download a configuration backup to the desktop, click on the desired file name. Save the file on the desktop. For further information and configuration steps, please refer to Surf-SeCure s user manual. TECHNICAL SUPPORT In case you need any technical support, please contact your reseller or PineApp s technical support center: North America: +1-877-300-3422 International: +972-4-8212-321 Email: support@pineapp.com Website: http:///

APPENDIX B RETRIEVING NTLM INFORMATION e Retrieving server name a. Open your Active directory server b. Under the organization domain s root folder, go to Computers > System properties. The following pane will appear: c. In system properties > General section, under Full Computer Name, copy the initial part (before the first dot highlighted red in the above image) and use it for Server name credentials. For example: if Full computer name is example.domain.com, type example in Server name.

Retrieving Domain information a. Open your Active directory server b. Right click on the domain s root folder and choose Properties. the following pane will appear: c. Copy the domain name that appears in General > Domain name (highlighted red in the above image).