Cisco Cisco Web Security Appliance S670 User Guide

Page of 784
 
Chapter 7      Identities
Creating Identities
7-20
Cisco IronPort AsyncOS 7.0 for Web User Guide
OL-23079-01
Step 2
Define an Identity group that identifies users transparently using Novell 
eDirectory:
a.
In the “Define Members by Authentication” section, choose “Identify Users 
Transparently Using Novell eDirectory.”
b.
Select the LDAP authentication realm that supports Novell eDirectory.
c.
Configure all other Identity options as desired.
For more information on creating Identities, see 
Step 3
Create policies that use the Identity for transparent user identification. 
Creating Identities
You can create Identities based on combinations of several criteria, such as client 
subnet or the URL category of the destination site. You must define at least one 
criterion for Identity membership. When you define multiple criteria, the client 
request must meet all criteria to match the Identity.
For more information about how the Web Proxy matches a client request with an 
Identity, see 
.
You define Identity group membership on the Web Security Manager > Identities 
page.
Note
Deleting an authentication realm or sequence disables Identities that depend on 
the deleted realm or sequence.
To create an Identity group:
Step 1
Navigate to the Web Security Manager > Identities page.
Step 2
Click Add Identity.