This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG Portal Access and Active Directory Integration- Authenticated Users Only Access?

Good Afternoon everyone,

Been working with the new XG's over the past couple of months and have an (what I hope is an easy/minor) issue with Portal and VPN access w/AD integration.  Wondering if I could get a little additional help.

Scenario:

Basic Server 2012 R2 Std. environment running AD

XG115 running ver 16.x

Have a new test environment we setup.  We have a specific set of users that we want to have VPN access to only.  Additionally those users will be able to login via the portal to access and download the VPN client software.

 

Problem:

Our problem is limiting what users have access.  My understanding after speaking initially with Sophos support is that we can narrow down who has access to these sections my narrowing down the Search Queries section.

We setup an OU called Security Groups, and inside that OU we created a security group called VPN of which we assign specific members to.

My intention was to set cn=VPN,ou=Security Groups,dc=testdomain,dc=local in the search query.  This yeilded no results however.  Not able to login any user of this object

However, if I move the user to the Security Groups OU and adjust the query to ou=Security Groups,dc=testdomain,dc=local, I'm able to authenticate and access without any problems.

Can we not specify a CN with the XG's?  Am I possibly entering this incorrectly?  This is possible on the UTM side of things, so I would assume the same features would still exist on the XG

It would make more sense to us and be easier to manage if we could specify a CN as opposed to having to drop the user in a particular OU

 

Thoughts?  Advice?  I do have a ticket open with Sophos on this, but it sometimes take days for them to respond and I see that sometimes faster responses come from the community. [:D]



This thread was automatically locked due to age.