Authentication logs show the user is authenticated correctly
However when browsing, the web filter doesn't pick up the user, so therefore doesn't apply the right policies
Any ideas where to look?
This thread was automatically locked due to age.
Authentication logs show the user is authenticated correctly
However when browsing, the web filter doesn't pick up the user, so therefore doesn't apply the right policies
Any ideas where to look?
Have run these commands but authentication log still not loading
service -ds nosync nasm:stop
rm -rf /content/nasm
service -ds nosync nasm:start
You should not run some random comments without verifying the issue first.
The reporting issue seems to be a database issue with logviewer (Garner).
Would recommend to create a support case, so this can be verified.
__________________________________________________________________________________________________________________
According to support I have to reconfigure all my servers and set them up to use a proxy server.
Surely this isn't required and Sophos is able to identify users just as it used to do?
Actually it is?
So to recap:
You can do two different things to authenticate a terminal server:
You can use Intercept X for Server, which uses a component like SATC. So no changes in behavior there.
You can use no software on the server and resolve this with the explicit proxy + kerberos. This is the new feature of V19.0. See: https://docs.sophos.com/nsg/sophos-firewall/19.0/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Authentication/HowToArticles/AuthenticationConfigurePerConnectionAuth/index.html#create-firewall-rules-for-multi-user-host-traffic You can use per-connection AD SSO authentication for multi-user hosts configured to use the Firewall as a direct proxy.
__________________________________________________________________________________________________________________
Using a proxy is not an option for the client, so I talked to them and convinced them to purchase Intercept X which is now installed, but there is still no authentication happening.