Configure application authentication, authorization, and auditing
-
Navigate to AppExpert > Applications.
-
In the details pane, do one of the following:
-
Click Add to add an authentication for a new application.
-
Click Edit to modify an existing application.
-
-
In the Applications page, select an Application Unit.
-
In the Application Unit slider page, click Authentication from the Advanced Settings section.
-
In the Authentication section, select the authentication type as follows:
-
Form based authentication
-
401 based authentication
-
None
-
-
Click OK and then click Done.
Configure application authorization
-
Navigate to AppExpert > Applications.
-
In the details pane, click the AppExpert application for which you want to configure a user or group access.
-
In the Applications page, and then click Authorization. from the Advanced Settings section.
-
Do one of the following:
-
If the AAA user or group for which you want to configure permissions are already in the Groups/Users tree, drag the user or group from the Groups/Users tree to the Users or Groups node in the application tree. Then, right-click the user or group and click Allow.
-
If the AAA user or group for which you want to configure permissions is not configured on the appliance, in the application tree, right-click Users or Groups, and then click Add. In the Create AAA Group or Create AAA User dialog box, fill in the values, click Create, and then click Close.The user or group is created with the permission set to Allow. To change the permission setting, right-click the group or user, and then click the permission setting.
-
-
Click Done and then click Close.
Configure application auditing
-
Navigate to AppExpert > Applications.
-
In the details pane, click the application for which you want to configure auditing policies.
-
In the Application Unit slider page, click + icon in the Policies section to configure the auditing policies.
-
In the Policies slider page, select policy type as Syslog auditing or Nslog auditing and click Continue.
-
In the Policy binding section, set the following parameters.
-
Select a policy for binding. If you do not have a policy for binding. click + to create a new policy.
-
To create a new auditing policy, under Policy Name, click New Policy, and then, in the Policy page do the following:
-
In the Name box, type a name for the policy.
-
The Name box already contains the string that is required at the beginning of the server name. You cannot modify the string.
-
From the Auditing Type list, select the auditing type (either SYSLOG or NSLOG).
-
If the audit server you want to specify is already listed in the Server list, select the server from the list, and then, if you want to modify the server settings, click Modify. In the Configure Auditing Server dialog box, modify the settings as appropriate, and then click OK. For more information about the settings in the Configure Auditing Server dialog box, see Auditing Authenticated Sessions.
-
If you want to configure a new audit server, click New, and then, in the Create Auditing Server dialog box, type a name for the server, specify the server IP address, port number, and other settings as appropriate. When finished, click OK.
-
Click Create.
-
-
To change the priorities for the new auditing policies you created, under Priority, for each policy for which you want to change the priority, double-click the priority value and type new priority value.
-
To regenerate priorities, click Regenerate Priorities.
-
To unbind a policy, click the policy, and then click Unbind Policy.
-
To modify a policy, click the policy, and then click Modify Policy.
-
-
Click Apply Changes, and then click Close.
Disabling AAA for an Application
-
Navigate to AppExpert > Applications.
-
In the details pane, click the application for which you want to enable or disable AAA, and then do one of the following:
-
To disable AAA for the application, click Turn Off AAA.
-
To enable AAA for the application, click Turn On AAA.