Adconf

From Wiki of WFilter NG Firewall
(Difference between revisions)
Jump to: navigation, search
(同步域账号)
Line 1: Line 1:
 
{{DISPLAYTITLE:AD Intergration}}
 
{{DISPLAYTITLE:AD Intergration}}
==Enable AD Intergration==
+
== AD Intergration ==
启用域帐户监控功能后,可以对域帐户配置上网策略,要使用此功能,必须已经存在一个AD域。
+
"AD Intergration" enables you to intergrate WFilter ROS with microsoft active directory, so you can:
[[File:Faq_en_adconf001.png]]
+
* Detect AD username of online devices.
<br><br>
+
* Set internet access and bandwidth shaper policies based on AD users.
[[File:Faq_en_adconf002.png]]
+
* Record AD users internet activity.
  
==对域账号配置上网策略==
+
For example:
<p>例如:网页过滤中编辑一条规则,选择应用的域账户</p>
+
* The real-time bandwidth:
[[File:Faq_en_adconf003.png]]
+
[[File:ros_adconf_001.png|650px]]
 +
* Choose applied-to users:
 +
[[File:Faq_en_adconf003.png|600px]]
  
==同步域账号==
+
== Settings  ==
<p>域控制器发生了修改,点击“立即同步域账号”即可同步修改</p>
+
[[File:Faq_adconf004.png]]<br><br>
+
[[File:Faq_en_adconf002.png]]
+
  
==FAQ==
+
To enable "AD Intergration", the following conditions must be met:
 +
* A valid enterprise license of WFilter ROS.
 +
* A valid active directory.
 +
* Admin access to the active directory(The admin user shall belong to the "Domain Admins" group.)
 +
[[File:Faq_en_adconf001.png|800px]]
 +
 
 +
[[File:Faq_en_adconf002.png|600px]]
 +
 
 +
* Notice:
 +
** WFilter ROS uses different machanism to retrieve logon domain users when the DC is in external or internal network.
 +
** When "automatically sync domain users" is enabled, new or deleted domain users will be synced to WFilter.
 +
** WFilter detects a domain user when it login into the active directory. So you might need to wait sometime to see logon users.
 +
** The default user entry timeout is 30 hours. If no re-logon happens in 30 hours after last time logon, this username will be timeout.
 +
** Some programs in the client device will automaticaly logon into the domain with a different AD user. In this case, you can add this user into the "Exception List".
 +
 
 +
 
 +
== FAQ ==

Revision as of 14:41, 24 December 2015

1 AD Intergration

"AD Intergration" enables you to intergrate WFilter ROS with microsoft active directory, so you can:

  • Detect AD username of online devices.
  • Set internet access and bandwidth shaper policies based on AD users.
  • Record AD users internet activity.

For example:

  • The real-time bandwidth:

Ros adconf 001.png

  • Choose applied-to users:

Faq en adconf003.png

2 Settings

To enable "AD Intergration", the following conditions must be met:

  • A valid enterprise license of WFilter ROS.
  • A valid active directory.
  • Admin access to the active directory(The admin user shall belong to the "Domain Admins" group.)

Faq en adconf001.png

Faq en adconf002.png

  • Notice:
    • WFilter ROS uses different machanism to retrieve logon domain users when the DC is in external or internal network.
    • When "automatically sync domain users" is enabled, new or deleted domain users will be synced to WFilter.
    • WFilter detects a domain user when it login into the active directory. So you might need to wait sometime to see logon users.
    • The default user entry timeout is 30 hours. If no re-logon happens in 30 hours after last time logon, this username will be timeout.
    • Some programs in the client device will automaticaly logon into the domain with a different AD user. In this case, you can add this user into the "Exception List".


3 FAQ

Personal tools
Namespaces

Variants
Actions
Navigation
Tools