Cisco Cisco Web Security Appliance S170 사용자 가이드

다운로드
페이지 734
 
21-37
Cisco IronPort AsyncOS 7.5.7 for Web User Guide
 
Chapter 21      Authentication
NTLM Authentication
Joining the Active Directory Domain
When you configure an NTLM realm, you must enter information to join the Active Directory domain 
to set up a computer account in the domain. An Active Directory computer account is an account that 
uniquely identifies the computer on the domain. It is also referred to as a machine trust account. 
After you enter the Active Directory account information in the authentication realm, click the Join 
Domain
 button to set up a computer account. Use the Location field to define the organizational 
directory where AsyncOS should create the computer account in the Active Directory domain.
 shows where you join an Active Directory domain.
Active Directory 
Agent
Choose whether or not to identify users transparently without prompting users. 
When you enable transparent user identification, you must install the Cisco 
Active Directory agent on at least one computer that can access the Active 
Directory server. Enter the server name for the machine where the primary 
Active Directory agent is installed and the shared secret used to access it. 
Optionally, enter the server name for the machine where a backup Active 
Directory agent is installed and its shared secret.
For more information, see 
Network Security
Configure whether or not the Active Directory server is configured to require 
signing. When you enable this check box, the appliance uses Transport Layer 
Security (TLS) when communicating with the Active Directory server. 
Table 21-15
NTLM Authentication Settings (continued)
Setting
Description