Cisco Cisco Web Security Appliance S360 User Guide

Page of 606
 
20-33
Cisco IronPort AsyncOS 7.7 for Web User Guide
 
Chapter 20      Authentication
Supported Authentication Characters
Note
The Web Security appliance supports the percent ( % ) character for end users browsing the web. 
However, you cannot use a user name with the percent ( %) character to join the Active Directory domain 
when you create an NTLM authentication realm.
 lists the characters the Web Security appliance supports for the Password field for Active 
Directory servers. 
 lists the characters the Web Security appliance supports for the Location field for Active 
Directory servers. You enter the location string in the Location field when you configure an NTLM 
authentication realm. 
 lists the characters the Web Security appliance supports for the Group field for Active 
Directory servers. 
Note
You can only use the backslash ( \ ) character as a separator between the domain name and a user or group 
name, or as a separator between organizational units (OU) in the location string for an Active Directory 
server. You cannot use it as part of a domain name, user name, group name, or location name.
Table 20-16
Supported Active Directory Server Characters — Password Field 
Supported Characters
Characters Not Supported
A...Z a...z
0 1 2 3 4 5 6 7 8 9
` ~ ! # $ ^ & ( ) _ - { } ' . / [ ] : | * ? @ + \ , ; " = < >
space
N/A
Table 20-17
Supported Active Directory Server Characters — Location Field 
Supported Characters
Characters Not Supported
A...Z a...z
0 1 2 3 4 5 6 7 8 9
` ~ ! # $ ^ & ( ) _ - { } ' . / [ ] : | * ? @
space
+ \ , ; " = < >
Note
The appliance does not support these 
characters even when they are escaped 
with a backslash ( \ ) character.
Table 20-18
Supported Active Directory Server Characters — Group Field 
Supported Characters
Characters Not Supported
A...Z a...z
0 1 2 3 4 5 6 7 8 9
` ~ ! # $ % ^ & ( ) _ - { } ' . @
space
/ \ [ ] : ; | = , + * ? < > "