Cisco Cisco Web Security Appliance S160 Guía Del Usuario
5-3
AsyncOS 8.1 for Cisco Web Security User Guide
Chapter 5 Acquire End-User Credentials
Authentication Realms
Tracking Credentials for Reuse During a Session
Using authentication surrogates, after a user authenticates once during a session, you can track
credentials for reuse throughout that session rather than having the user authenticate for each new
request. Authentication surrogates may be based on the IP address of the user’s workstation or on a
cookie that is assigned to the session.
credentials for reuse throughout that session rather than having the user authenticate for each new
request. Authentication surrogates may be based on the IP address of the user’s workstation or on a
cookie that is assigned to the session.
Authentication and Authorization Failures
If authentication fails for accepted reasons, such as incompatible client applications, you can grant guest
access.
access.
If authentication succeeds but authorization fails, it is possible to allow re-authentication using a
different set of credentials that may be authorized to access the requested resource.
different set of credentials that may be authorized to access the requested resource.
Related Topics
•
•
Authentication Realms
•
•
•
•
•
•
About Authentication Realms
Authentication realms define the details required to contact the authentication servers and specify which
authentication scheme to use when communicating with clients. AsyncOS supports multiple
authentication realms. Realms can also be grouped into authentication sequences that allow users with
different authentication requirements to be managed through the same policies.
authentication scheme to use when communicating with clients. AsyncOS supports multiple
authentication realms. Realms can also be grouped into authentication sequences that allow users with
different authentication requirements to be managed through the same policies.
Related Topics
•
Creating an Active Directory Realm for Kerberos Authentication Scheme
Before You Begin
•
Ensure the appliance is configured in Standard mode (not Cloud Connector Mode).
•
Prepare the Active Directory Server.