Table6:DNSHostnameSpecialCharacters
MatchesALLcharacters
*
Matchesanycharacterexceptdot(.)
%
Matchesexactlyonecharacter
?
NOTE: YoucannotspecifyahostnameforaNetworkConnectresource
policy.YoucanonlyspecifyanIPaddress.
Ports(optional)—Possiblevalues:
Table7:PortPossibleValues
MatchesALLports;nootherspecialcharactersareallowed
*
Acomma-delimitedlistofsingleports.Validportnumbersare[1-65535].Donotenteraspace
betweenportnumbers.Youcanspecifyupto15ports.
port[,port]*
Arangeofports,fromport1toport2,inclusive.
[port1]-[port2]
NOTE: Youmaymixportlistsandportranges,suchas:
80,443,8080-8090,exceptforinNetworkConnectwheremixingofport
listsandportrangesisnotsupported.
Iftheportismissing,thenthedefaultport80isassignedforhttp,443forhttps.For
NetworkConnect,iftheportismissingthenthedefaultporthttpis*.Ifaportis
specified,thenthedelimiter“:”isrequired.Forexample:
<username>.danastreet.net:5901-5910
tcp://10.10.149.149:22,23
tcp://10.11.0.10:80
udp://10.11.0.10:*
ResourcePolicyEvaluation
WhenanSASeriesSSLVPNAppliancereceivesauserrequest,itevaluatestheresource
policiescorrespondingtothetypeofrequest.Whenitprocessesthepolicythat
correspondstotherequestedresource,itappliesthespecifiedactiontotherequest.This
actionisdefinedonthepolicy’sGeneraltaborDetailedRulestab.Forexample,ifauser
requestsaWebpage,theSASeriesSSLVPNApplianceknowstousetheWebresource
policies.InthecaseofWebrequests,theSASeriesSSLVPNAppliancealwaysstarts
withtheWebRewritingpolicies(SelectiveRewritingandPassthroughProxy)todetermine
whetherornottohandletherequest.Ifnoneofthesepoliciesapplies(ornoneisdefined),
theSASeriesSSLVPNAppliancethenevaluatestheWebAccesspoliciesuntilitfinds
onethatpertainstotherequestedresource.
135
Copyright©2012,JuniperNetworks,Inc.
Chapter7:ResourcePolicies
Best pdf compression tool - Compress reduce PDF size in C#.net, ASP.NET, MVC, Ajax, WinForms, WPF
C# Code & .NET API to Compress & Decompress PDF Document
batch pdf compression; change font size in pdf
Best pdf compression tool - VB.NET PDF File Compress Library: Compress reduce PDF size in vb.net, ASP.NET, MVC, Ajax, WinForms, WPF
VB.NET PDF Document Compression and Decompression Control SDK
pdf optimized format; change paper size pdf
TheSASeriesSSLVPNApplianceevaluatesasetofresourcepoliciesforanaccess
featurefromthetopdown,meaningthatitstartswiththepolicynumberedoneandthen
continuesdownthepolicylistuntilitfindsamatchingpolicy.Ifyoudefineddetailedrules
forthematchingpolicy,theSASeriesSSLVPNApplianceevaluatestherulesfromthe
topdown,startingwiththerulenumberedoneandstoppingwhenitfindsamatching
resourceintherule’sResourcelist.Thefollowingdiagramillustratesthegeneralsteps
ofpolicyevaluation:
Figure8:ResourcePolicyEvaluationSteps
Detailsregardingeachevaluationstep:
1.
TheSASeriesSSLVPNAppliancereceivesauserrequestandevaluatestheuser’s
sessionroletodetermineifthecorrespondingaccessfeatureisenabled.Auser’s
“sessionrole”isbasedoneithertheroleorrolestowhichtheuserisassignedduring
theauthenticationprocess.Theaccessfeaturesenabledforauseraredetermined
byanauthenticationrealm’srolemappingconfiguration.
2.
TheSASeriesSSLVPNAppliancedetermineswhichpoliciesmatchtherequest.The
SASeriesSSLVPNApplianceevaluatestheresourcepoliciesrelatedtotheuser
request,sequentiallyprocessingeachpolicyuntilfindingtheonewhoseresourcelist
anddesignatedrolesmatchtherequest.(IfyouconfiguretheSASeriesSSLVPN
Applianceusingresourceprofiles,theSASeriesSSLVPNApplianceevaluatesthe
advancedpoliciesthatyouconfigureaspartoftheresourceprofile.)
TheWebandfileaccessfeatureshavemorethanonetypeofpolicy,sotheSASeries
SSLVPNAppliancefirstdeterminesthetypeofrequest(suchastoaWebpage,Java
applet,orUNIXfile)andthenevaluatesthepoliciesrelatedtotherequest.Inthecase
oftheWebaccessfeature,theRewritingpoliciesareevaluatedfirstforeveryWeb
request.Theremainingfiveaccessfeatures—SecureApplicationManager,Secure
TerminalAccess,andSecureEmailClient—haveonlyoneresourcepolicy.
Copyright©2012,JuniperNetworks,Inc.
136
JunosPulseSecureAccessServiceAdministrationGuide
C# PDF Convert to Tiff SDK: Convert PDF to tiff images in C#.net
Best C#.NET PDF converter SDK for converting PDF to Supports tiff compression selection. library control (XDoc.PDF) is a multifunctional PDF document converting
optimize scanned pdf; change font size fillable pdf
VB.NET PDF - Convert PDF Online with VB.NET HTML5 PDF Viewer
Best Visual Studio .NET HTML5 PDF Viewer PDF Viewer control as Export multiple pages PDF document to multi-page Tiff Able to choose TIFF file compression mode.
change page size of pdf document; best online pdf compressor
3.
TheSASeriesSSLVPNApplianceevaluatesandexecutestherulesspecifiedinthe
matchingpolicies.Youcanconfigurepolicyrulestodotwothings:
Specifyresourcestowhichanactionappliesatamoregranularlevel.Forexample,
ifyouspecifyaWebserverinthemainpolicysettingsforaWebAccessresource
policy,youcandefineadetailedrulethatspecifiesaparticularpathonthisserver
andthenchangetheactionforthispath.
Requiretheusertomeetspecificconditionswrittenasbooleanexpressionsor
customexpressionsinordertoapplytheaction.
4.
TheSASeriesSSLVPNAppliancestopsprocessingresourcepoliciesassoonasthe
requestedresourceisfoundinapolicy’sResourcelistordetailedrule.
NOTE: Ifyouuseautomatic(time-based)dynamicpolicyevaluationoryou
performamanualpolicyevaluation,theSASeriesSSLVPNAppliancerepeats
theresourceevaluationprocessdescribedinthissection.
Related
Documentation
UserRolesOverviewonpage93
CreatingDetailedRulesforResourcePoliciesonpage137
DynamicPolicyEvaluationonpage65
CreatingDetailedRulesforResourcePolicies
TheWeb,file,SecureApplicationManager,Telnet/SSH,andNetworkConnectaccess
featuresenableyoutospecifyresourcepoliciesforindividualWeb,file,application,and
telnetservers.TheEmailClientaccessfeatureshaveonepolicythatappliesglobally.
Forthispolicies,youspecifyserversettingsthatareusedforeveryrolethatenablesthese
accessfeatures.Forallotheraccessfeatures,youcanspecifyanynumberofresource
polices,andforeach,youcandefineoneormoredetailedrules.
Adetailedruleisaanextensionofaresourcepolicythatmayspecify:
Additionalresourceinformation—suchasaspecificpath,directory,file,orfiletype—for
resourceslistedontheGeneraltab.Notethatyoumayalsospecifythesameresource
list(asontheGeneraltab)foradetailedruleiftheonlypurposeofthedetailedrule
istoapplyconditionstoauserrequest.
AnactiondifferentfromthatspecifiedontheGeneraltab(althoughtheoptionsare
thesame).
Conditionsthatmustbetrueinorderforthedetailedruletoapply.
Inmanycases,thebaseresourcepolicy—thatis,theinformationspecifiedontheGeneral
tabofaresourcepolicy—providessufficientaccesscontrolforaresource:
Ifauserbelongingtothe(defined_roles)triestoaccessthe(defined_resources),DOthe
specified(resource_action).
137
Copyright©2012,JuniperNetworks,Inc.
Chapter7:ResourcePolicies
C# HTML5 PDF Viewer SDK to convert and export PDF document to
Best Visual Studio .NET HTML5 PDF Viewer PDF Viewer control as Export multiple pages PDF document to multi-page Tiff Able to choose TIFF file compression mode.
change font size in pdf fillable form; pdf edit text size
Youmaywanttodefineoneormoredetailedrulesforapolicywhenyouwantperform
anactionbasedonacombinationofotherinformation,whichcaninclude:
Aresource’sproperties,suchasitsheader,content-type,orfiletype.
Auser’sproperties,suchastheuser’susernameandrolestowhichtheusermaps.
Asession’sproperties,suchastheuser’ssourceIPorbrowsertype,whethertheuser
isrunningHostCheckerorCacheCleaner,thetimeofday,andcertificateattributes.
Detailedrulesaddflexibilitytoresourceaccesscontrolbyenablingyoutoleverageexisting
resourceandpermissioninformationtospecifydifferentrequirementsfordifferentusers
towhomthebaseresourcepolicyapplies.
Related
Documentation
WritingaDetailedRuleforResourcePoliciesonpage138
WritingaDetailedRuleforResourcePolicies
Detailedrulesaddflexibilitytoresourceaccesscontrolbyenablingyoutoleverageexisting
resourceandpermissioninformationtospecifydifferentrequirementsfordifferentusers
towhomthebaseresourcepolicyapplies.
Towriteadetailedruleforaresourcepolicy:
1.
OntheNewPolicypageforaresourcepolicy,entertherequiredresourceandrole
information.
2.
IntheActionsection,selectUseDetailedRulesandthenclickSaveChanges.
3.
OntheDetailedRulestab,clickNewRule.
4.
OntheDetailedRulepage:
IntheActionsection,specify:
DisableSSO—TheSASeriesSSLVPNAppliancedisablesautomaticSSO
authenticationforthisuserroleand,instead,promptstheuserforsign-in
credentials.
BasicBasic—ThisoptionspecifiesthattheSASeriesSSLVPNApplianceusethe
BasicAuthenticationIntermediationmethodtocontrolSSObehavior.
EnableIntermediation—Selectthecredentialstouse.Ifthispull-downmenuis
blank,nobasicauthenticationSSOsettingsaredefinedintheSSOGeneraltab.
DisableIntermediation—Whenyouselectthisoption,theSASeriesSSLVPN
Appliancedoesnotintermediatethechallenge/responsesequence.
Copyright©2012,JuniperNetworks,Inc.
138
JunosPulseSecureAccessServiceAdministrationGuide
NOTE: TheSASeriesSSLVPNAppliancealwaysintermediates
requeststoWebproxiesthatrequirebasicauthentication,evenifyou
selectDisableIntermediation.
Althoughyouaregivenanoptiontodisablebasicauthentication
intermediation,wedonotrecommendthisoption,asitisavery
insecureauthenticationmethodand,insomecases,cantransmituser
credentialsoverthenetworkinclear(unencrypted)text.
NTLM—ThisoptionspecifiesthattheSASeriesSSLVPNApplianceusethe
MicrosoftNTLMIntermediationmethodtocontrolSSObehavior.
Selectthecredentialstouse.Ifthispull-downmenuisblank,noNTLMSSO
settingsaredefinedintheSSOGeneraltab.
SelecttheFallbacktoNTLMV1optiontotrybothNTLMV1andNTLMV2.Ifyou
donotselectthisoption,theSASeriesSSLVPNAppliancefallsbackonlyto
NTLMV2.AnintermediationpageappearifSSOfails.
Kerberos—ThisoptionspecifiesthattheSASeriesSSLVPNApplianceusethe
KerberosIntermediationmethodtocontrolSSObehavior.
Selectthecredentialstouse.Ifthispull-downmenuisblank,nokerberosSSO
settingsaredefinedintheSSOGeneraltab.
SelecttheFallbacktoNTLMV2optiontofallbackonlytoNTLMV2ifkerberos
fails.Ifyoudonotselectthisoption,aKerberosintermediationpageappearsif
KerberosSSOfails.
ConstrainedDelegation—ThisoptionspecifiesthattheSASeriesSSLVPN
ApplianceusetheconstraineddelegationintermediationmethodtocontrolSSO
behavior.
Selectthecredentialstouse.Ifthispull-downmenuisblank,noconstrained
delegationSSOsettingsaredefinedintheSSOGeneraltab.
SelecttheFallbacktoKerberosoptionfallbacktoKerberosifconstrained
delegationfails.Ifyouselectthisoption,anintermediationpageappearsif
constraineddelegationfails.Ifyoudonotselectthisoptionandconstrained
delegationfails,anerrorpageappears.
IntheResourcessection,specifyanyofthefollowing(required):
ThesameorapartiallistoftheresourcesspecifiedontheGeneraltab.
Aspecificpathorfileontheserver(s)specifiedontheGeneraltab,usingwildcards
whenappropriate.ForinformationabouthowtousewildcardswithinaResources
list,seethedocumentationforthecorrespondingresourcepolicy.
Afiletype,precededbyapathifappropriateorjustspecify*/*.file_extensionto
indicatefileswiththespecifiedextensionwithinanypathontheserver(s)specified
ontheGeneraltab.
139
Copyright©2012,JuniperNetworks,Inc.
Chapter7:ResourcePolicies
IntheConditionssection,specifyoneormoreexpressionstoevaluateinorderto
performtheaction(optional):
Booleanexpressions:Usingsystemvariables,writeoneormoreboolean
expressionsusingtheNOT,OR,orANDoperators.
Customexpressions:Usingthecustomexpressionsyntax,writeoneormore
customexpressions.
NOTE: Youcanusethe<USER>substitutionvariableinACLsforweb
pages,telnet,files,andSAM.YoucannotusethevariableinNetwork
ConnectACLs.
Whenspecifyingatimecondition,thespecifiedtimerangecannot
crossmidnight.Theworkaroundistobreakthetimerangeintotwo
conditions.
ClickSaveChanges.
5.
OntheDetailedRulestab,ordertherulesaccordingtohowyouwanttheSASeries
SSLVPNAppliancetoevaluatethem.KeepinmindthatoncetheSASeriesSSLVPN
Appliancematchestheresourcerequestedbytheusertoaresourceinarule’sResource
list,itperformsthespecifiedactionandstopsprocessingrules(andotherresource
policies).
Related
Documentation
WritingtheBasic,NTLMandKerberosResourcesonpage436
UsingSystemVariablesinRealms,Roles,andResourcePoliciesonpage1022
ElementsUsedinCustomExpressionsonpage1008
CustomizingResourcePolicyUIViews
YoucanlimitwhichresourcepoliciestheSASeriesSSLVPNAppliancedisplaysonany
givenresourcepolicypagebasedonuserroles.Forinstance,youcanconfiguretheUsers
>ResourcePolicies>Webpageoftheadminconsoletoonlydisplaythoseresource
policiesthatareassignedtothe“Sales”userrole.
TocontrolwhichresourcepoliciestheSASeriesSSLVPNAppliancedisplays:
1.
NavigatetoUsers>ResourcePolicies>PolicyType.
2.
FromtheShowallpoliciesthatapplytolist,selectAllRolesoranindividualrole.
3.
ClickUpdate.TheSASeriesSSLVPNAppliancedisplaysresourcepoliciesthatare
assignedtotheselectedroles.
Copyright©2012,JuniperNetworks,Inc.
140
JunosPulseSecureAccessServiceAdministrationGuide
CHAPTER8
AuthenticationandDirectoryServers
AboutAuthenticationandDirectoryServersonpage142
TaskSummary:ConfiguringAuthenticationServersonpage143
AboutAnonymousServersonpage144
DefininganAnonymousServerInstanceonpage145
UsinganRSAACE/Serveronpage146
DefininganACE/ServerInstanceonpage147
UsingActiveDirectoryorNTDomainsonpage149
DefininganActiveDirectoryorWindowsNTDomainServerInstanceonpage150
Multi-DomainUserAuthenticationonpage151
UsingtheKerberosDebuggingToolonpage153
ActiveDirectoryandNTGroupLookupSupportonpage154
CertificateServeronpage155
ConfiguringaCertificateServerInstanceonpage156
UsinganLDAPServeronpage157
DefininganLDAPServerInstanceonpage157
ConfiguringLDAPSearchAttributesforMeetingCreatorsonpage160
EnablingLDAPPasswordManagementonpage160
UsingaLocalAuthenticationServeronpage165
DefiningaLocalAuthenticationServerInstanceonpage165
CreatingUserAccountsonaLocalAuthenticationServeronpage168
ConfiguringanNISServerInstanceonpage169
ConfiguringaRADIUSServerInstanceonpage170
DefininganSASeriesRADIUSServerInstanceonpage172
EnablingRADIUSAccountingonpage175
GeneralRADIUSNotesonpage186
eTrustSiteMinderOverviewonpage187
ConfiguringSiteMindertoWorkwiththeSASeriesSSLVPNApplianceonpage191
ConfiguringtheSiteMinderAgentonpage192
141
Copyright©2012,JuniperNetworks,Inc.
CreatingaSiteMinderAuthenticationSchemefortheSASeriesSSLVPN
Applianceonpage193
CreatingaSiteMinderDomainfortheSASeriesSSLVPNApplianceonpage195
CreatingaSiteMinderRealmfortheSASeriesSSLVPNApplianceonpage195
CreatingaRule/ResponsePairtoPassUsernamestotheSASeriesSSLVPN
Applianceonpage196
ConfiguringSecureAccesstoWorkwithSiteMinderonpage197
UsingSiteMinderUserAttributesforSecureAccessRoleMappingonpage207
DefiningaSiteMinderRealmforAutomaticSign-Inonpage207
DebuggingSiteMinderandSecureAccessIssuesonpage208
ConfiguringaSAMLServerInstanceonpage209
UnderstandingAssertionsonpage211
CreatinganewSAMLServerInstanceonpage214
ConfiguringtheSAMLServerInstancetoUseanArtifactProfileonpage215
ConfiguringtheSAMLServerInstancetoUsethePOSTProfileonpage215
AboutSAML2.0onpage216
ConfiguringGlobalSAML2.0Settingsonpage217
ManagingMetadataFilesonpage218
ConfiguringtheSASeriesSSLVPNApplianceasaServiceProviderforSAML
2.0onpage219
ConfiguringtheSASeriesSSLVPNApplianceasanIdentityProvideronpage221
ConfiguringtheSASeriesSSLVPNApplianceasaPolicyEnforcementPointonpage223
AboutAuthenticationandDirectoryServers
Anauthenticationserverisadatabasethatstoresusercredentials—usernameand
password—andtypicallygroupinformation.WhenausersignsintotheSAappliance,
theuserspecifiesanauthenticationrealm,whichisassociatedwithanauthentication
server.Iftheusermeetstherealm’sauthenticationpolicy,theSAforwardstheuser’s
credentialstotheassociatedauthenticationserver.Theauthenticationserver’sjobisto
verifythattheuserexistsandiswhosheclaimstobe.Afterverifyingtheuser,the
authenticationserversendsapprovaltotheSAand,iftherealmalsousestheserveras
adirectory/attributeserver,theuser’sgroupinformationorotheruserattribute
information.TheSAthenevaluatestherealm’srolemappingrulestodeterminetowhich
userrolestheusermaybemapped.
TheSAappliancesupportsthemostcommonauthenticationservers,includingWindows
NTDomain,ActiveDirectory,RADIUS,LDAP,NIS,RSAACE/Server,andeTrustSiteMinder,
andenablesyoutocreateoneormorelocaldatabasesofuserswhoareauthenticated
bytheSA.
Adirectoryserverisadatabasethatstoresuserandtypicallygroupinformation.Youcan
configureanauthenticationrealmtouseadirectoryservertoretrieveuserorgroup
informationforuseinrolemappingrulesandresourcepolicies.Currently,theSAsupports
Copyright©2012,JuniperNetworks,Inc.
142
JunosPulseSecureAccessServiceAdministrationGuide
LDAPserversforthispurpose,whichmeansyoucanuseanLDAPserverforboth
authenticationandauthorization.Yousimplyneedtodefineoneserverinstance,and
thentheLDAPserver’sinstancenameappearsinboththeAuthenticationand
Directory/Attributedrop-downlistsonarealm’sGeneraltab.Youcanusethesame
serverforanynumberofrealms.
InadditiontoLDAP,youcanuseaRADIUSorSiteMinderserverforretrievinguserattributes
thatcanbeusedinrolemappingrules.UnlikeanLDAPserverinstance,however,aRADIUS
orSiteMinderserverinstancenamedoesnotappearinarealm’sDirectory/Attribute
drop-downlist.TouseaRADIUSorSiteMinderservertoretrieveuserinformation,you
simplychooseitsinstancenameintheAuthenticationlistandthenchooseSameas
AboveintheDirectory/Attributelist.Then,youconfigurerolemappingrulestouse
attributesfromtheRADIUSorSiteMinderserver,whichtheSAprovidesinanattribute
listontheRoleMappingRulepageafteryouselectRulebasedonUserattribute.
AuthenticationserversareanintegralpartoftheSAaccessmanagementframework,
andthereforeavailableonallSASeriesproducts.Note,however,thattheeTrust
SiteminderserverisnotavailableontheSA700Seriesappliance.
Related
Documentation
TaskSummary:ConfiguringAuthenticationServersonpage143
TaskSummary:ConfiguringAuthenticationServers
Tospecifyanauthenticationserverthatarealmmayuse,youmustfirstconfigureaserver
instanceontheAuthentication>Auth.Serverspage.Whenyousavetheserver’ssettings,
theservername(thenameassignedtotheinstance)appearsontherealm’sGeneral
tabintheAuthenticationdrop-downlist.Iftheserverisa(n):
LDAPorActiveDirectoryserver—Theinstancenamealsoappearsinthe
Directory/Attributedrop-downlistontherealm’sGeneraltab.Youmayusethesame
LDAPorActiveDirectoryserverforbothauthenticationandauthorizationforarealm,
aswellasusetheseserversforauthorizationforanynumberofrealmsthatusedifferent
authenticationservers.
RADIUSserver—TheinstancenamealsoappearsintheAccountingdropdownliston
therealm’sGeneraltab.YoumayusethesameRADIUSserverforbothauthentication
andaccountingforarealm,aswellasusetheseserversforaccountingforanynumber
ofrealmsthatusedifferentauthenticationservers.
UsetheAuth.Serverspagetodefineauthenticationserverinstances.Authentication
serversauthenticateusercredentialsandauthorizationserversprovideuserinformation
thattheSASeriesSSLVPNApplianceusestodetermineuserprivilegeswithinthesystem.
Forexample,youcanspecifyacertificateserverinstancetoauthenticateusersbased
ontheirclient-sidecertificateattributesandthencreateanLDAPserverinstanceto
authorizetheusersbasedonvaluescontainedwithinaCRL(certificaterevocationlist).
143
Copyright©2012,JuniperNetworks,Inc.
Chapter8:AuthenticationandDirectoryServers
Toconfigureauthenticationservers:
1.
Setupyourauthentication/authorizationserverusinginstructionsfromtheprovider.
2.
CreateaninstanceoftheserverstartingattheAuthentication>Authentication>
Auth.Serverspageintheadminconsole.
NOTE:
AnauthenticationservermustbeabletocontacttheSASeriesSSL
VPNAppliance.IfanauthenticationserversuchasRSAACE/Server
doesnotuseIPaddressesfortheagenthosts,theauthenticationserver
mustbeabletoresolvetheSASerieshostname,eitherthroughaDNS
entryoranentryintheauthenticationserver’shostfile.
YoucanonlycreateoneeTrustSiteminderserverinstancepertheSA
SeriesSSLVPNAppliance.
IfyouauthenticateyourActiveDirectoryserverwith:
NTLMprotocol—ChooseActiveDirectory/WindowsNTDomain.
LDAPprotocol—ChooseLDAPServer.
Ifyouarecreatingalocalauthenticationserverinstancetoauthenticate
useradministrators,youmustselectLocalAuthentication.
a.
SelectaservertypefromtheNewdrop-downlist.
b.
ClickNewServer.
c.
Dependingonwhichserveryouselected,specifysettingsfortheindividualserver
instance.
3.
CreateanauthenticationrealmusingsettingsintheUsers>UserRealmsor
Administrators>AdminRealmspageoftheadminconsole.
4.
Localauthenticationserversonly:Adduserstotheserverusingsettingsinthe
Authentication>Auth.Servers>SelectLocalServer>Userspageoftheadmin
console.
5.
Passwordmanagementonly:setuppasswordmanagementoptions.
Related
Documentation
AboutAuthenticationandDirectoryServersonpage142
AboutAnonymousServers
TheanonymousserverfeatureallowsuserstoaccesstheSASeriesSSLVPNAppliance
withoutprovidingausernameorpassword.Instead,whenauserenterstheURLofa
sign-inpagethatisconfiguredtoauthenticateagainstananonymousserver,theSA
SeriesSSLVPNAppliancebypassesthestandardsign-inpage,andimmediatelydisplays
thewelcomepagetotheuser.
Copyright©2012,JuniperNetworks,Inc.
144
JunosPulseSecureAccessServiceAdministrationGuide
Documents you may be interested
Documents you may be interested