SG UTM
Suggest, discuss, and vote on new ideas for SG UTM. The ultimate network security package.
-
Astaro Authentication Agent for Mac/Linux
What I am suggesting is you port the "Client Authentication program" and the "Astaro Security Agent" to linux(32/64), BSD(32/64) as well as Mac OS X.
87 votesSophos Authentication Agent for OSX was included in UTM v9.100
-
Authentication: Support Availablity Groups for Auth Servers
Make it possible to add additional domain server in the single sign on configuration or allow availability group in the "Server" configuration so that if the first domain is down authentication will fail over to the second domain
7 votes -
Authentication: User Creation Streamlining
After having to create loads of users on a new system I have a couple of change requests that would (somewhat) ease the task of creating users.
In the dialog for creating new users I would prefer to
1) not have to enter password twice. It will very often be a cut'n'paste anyway, and if you typo it it is easy to fix.2) Remove the default 0.0.0.0 value for static IPs. Now I have to delete the content there before pasting.
1 voteThis feature has been released as part of UTM 9.1. Enjoy!
(You no longer need to enter authentication credentials 2x in many areas). -
User authentication, 2nd Active Directory server
We need the ability to have more than one Auth server.
14 votesThis feature has been added to ASG in 7.500.
regards
Gert -
Authentication: Multiple LDAP Servers
Would be nice to have more than one for reliability
2 votesHi,
this has been added to ASG in V7.500.
Regards
Gert -
Authentication: Automatically Update Backend Users
In the users definitions, there should be a button for each user that is authenticated by a backend service to check for updated information of that user.
Additionally, there could be a button which updates all users or maybe a group of users at once.Example:
A user gets a new email-adress in Active Directory. It is supposed to be updated within 5 minutes in the Astaro database, but sometimes it doesn't work. At least this was the case when we did some testing today when the user had to log in to the Enduser Portal before his information was…3 votesAs Bob mentions, ASG can automatically prefetch the users on a definable schedule, which solves your request here.
-
Authentication: Import Additional Email Addresses with Prefetch
The Active Directory prefetch currently imports only the primary email address for each user. This creates a problem if the user recieves an email under an alias, the message does not show up in their mail manager (user portal) unless you manually add the alias to the account. Also, the Prefetch currently overwrites all user accounts so if you manually add an address to an account, the additional address is lost with the next AD prefetch.
15 votesThis is possible in UTM9. Using the “create backend users” option, all configured email aliases will be added to the linked user object created on the UTM and visible as aliased mail addresses.
-
Authentication : SSO with Apple Open Directory
Add the possibility to use SSO authentication with Apple Open Directory and not just Active Directory for Web filtering authentication.
3 votes -
Prefetch directory users at System Startup
is it possible to config "Prefetch directory users" at System Startup?
If not, this feature would be great !
2 votesWhile not at startup, like bob says you can already do this at timed intervals if you require it.
-
Authentication: Remote Group Membership for Remote Access and Packetfilter
Be able to use eDirectory and Active Directory groups inside the remote access and inside the packetfilter ruleset. This requires the AUA process to add the authenticated ip address of a user to the matching groups he is part of. Customers can use remote authentication and remote group management in every area of the product. This way the config of the ASG must not be modified if a new user gets added to the eDir or AD and therefore reduced the configuration overhead.
21 votesHI folks, this has already been added to V7.300. Not sure how it ended up here :). thx Gert
-
Allow Backend Authentication through user protal
Instead of forcing people to authenticate to create the account through relay. Allow users to be automatically created when logging into to the user portal. That way instead of assigning each user to the user portal you can assign a group (backend auth users).
4 votes -
Astaro Authenication Agent as MSI
So that we can more easily deploy the AAA, please make it available as an MSI file (in addition to the already-possible .exe format).
This will allow admins to roll-out in mass operations to many stations and make it easy to get running with the AAA.
0 votesThis feature has been released as part of Version 8.200 of ASG. Enjoy!
- Don't see your idea?