Kerio Tech Firewall6 Network Router User Manual


 
Chapter 13 User Accounts and Groups
196
Figure 13.9 Setting domains for authentication of local accounts
Active Directory
Use the Enable Active Directory authentication option to enable/disable user authentica-
tion at the local database in the selected Active Directory domain.
The following conditions must be met to enable smooth functionality of user authenti-
cation through Active Directory:
1. The WinRoute host must be a member of this domain.
2. The Active Directory domain controller (server) must be set as the primary DNS
server.
If the DNS server itself is set in the operating system, the domain controller of the
Active Directory must be the first item in the DNS servers list in the DNS Forwarder
configuration (for details, refer to chapter 5.3).
Note: Users can also be authenticated in any domain set as trustworthy for the particular
domain.
NT domain
Use the Enable NT domain authentication option to enable NTLM authentication for the
domain selected.
Warning:
1. The host where WinRoute is installed must belong to this domain.
2. Authentication through a corresponding NT domain must be allowed to enable
NTLM authentication through Web browsers (refer to chapter 8.1). For the Windows
2000/2003 domain, it is necessary to set authentication both through Active Direc-
tory and NT domain.