Download pdf file - iNODE connectware
Transcript
Configuring iNODE 139 To edit a proxy access rule, click on the name of the rule and then follow the instructions provided in the previous section Adding a new proxy rule Deleting a proxy access rule To delete a proxy access rule, click the Delete button next the rule you wish to remove. Setting the proxy access rule order If you wish to set the order in which the proxy access filters are checked, use the arrow buttons next to the rule you wish to move up or down in the list. When a service request arrives to the server, the server starts checking from the first access rule until the request matches all conditions described by the proxy access filters of an access rule. If a rule is matched the rule’s policy is applied to the request. If no rule is matched, the request is denied! The “Allow lan users” option in the general configuration screen is actually a proxy access rule that allows access to all IPs of the Local Area Network (according to eth0’s IPs). This is considered the last in order in the list of access rules. If that option is not checked, then you must create rules that permit access, otherwise any request is denied! NOTE: The same applies to the “Enable proxy authentication” checkbox in the general settings. When this is checked, a proxy access rule is implied at the end of the rules list, that allows access to all authenticated users! Only users that have “proxy access” checked in their user rights can authenticate to the proxy server! Be careful when using the above options together! A user that cannot authenticate, may have access to the proxy, based on his IP matching the “Allow lan users” rule, even if authentication fails! In this case, an authentication failure does not mean that access is denied! © 2001-2004