This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

reauthenticate AD user when account is locked

I´m testing out the websecurity/proxy/active directoru auth at work and...

It´s working fine with auth, problem is that we have som guest accounts that are due for 1,2,4,8 hours

from what i can tell it doesent reauthenticate aginst the AD once logged in, is that true and if so how can i get asg to reauth say every 15min and if account is locked out then he should just throw up the "log in page"

hope it makes sense!

regards /Fredde


This thread was automatically locked due to age.
Parents
  • I believe this is a bug.  Did you submit a support request to your reseller?  I should have been clearer - I suggest you submit a support request to Astaro via MyAstaro.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • I believe this is a bug.  Did you submit a support request to your reseller?  I should have been clearer - I suggest you submit a support request to Astaro via MyAstaro.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
  • I believe this is a bug.  Did you submit a support request to your reseller?  I should have been clearer - I suggest you submit a support request to Astaro via MyAstaro.

    Cheers - Bob


    Thank you for your response.

    Yeah i´ve done both
    i´m note sure it´s a bug, i think it´s just is´t implemented yet

    just to clarify what i want

    authentication through web security (with AD)
    when account is disabled (guest account) user should get a login screen again and not being able to relogin (not before account is reopend again)

    So basicly i want asg to check agains AD say every 60min and if it changes to "disabled" it should prevent further access through web security.

    /F
  • One idea you can try as a workaround (I have no idea if it'd work or not)... what happens if you just move that guest user account out of the AD Group that is being used to control access?  Maybe group membership is checked every so often by the Astaro?

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.