Specifications

25
Configuring User Databases
All user data used and managed by the appliance must be stored somewhere. The Barracuda SSL VPN
allows the configuration of a number of databases to store this information.
By the end of this chapter the reader should have an understanding of each type of database and be
able to configure the appropriate one that suits their particular requirements.
Configure User Database
The user database configuration page (Management Console > Access Control > User Databases)
lists the available databases.
This page has the following properties:
Name: The name to be associated with the user database.
Description: A brief description of the user database.
User Database Host: This property allows you to automatically select the user database that
users authenticate against when connecting to the SSL VPN. When using multiple user
databases you can enter here a hostname such as company1.example.com that is associated
with the user database. A corresponding DNS entry should be made that maps this hostname
to the Barracuda SSL VPN. When connections are made to the SSL VPN via this hostname,
the user database to authenticate against will be automatically selected.
Show on logon page: If this property is enabled, the new user database will be selectable in
the logon page dropdown list box. If you do not wish users to be able to browse user
databases other than their own, you can use this setting along with ‘user database host’ to
auto-select the user database to authenticate against upon login.
Configuring the Built-in Database
Configuring the built-in database is very simple; just select the ‘Built-in’ option on the ‘User Database
Type’ page. The appliance does all configuration of the database itself internally.
As this is a new database, once the appliance is up and running you will have to create all necessary
users and groups from the management console. With the built-in database you will also be able to edit
and remove users and roles directly.
Configuring Active Directory
Active Directory configuration is divided into three distinct tabs. The first of these is the connection
tab.
The following information is required:
Domain Controller Hostname: The primary Active Directory service domain in the form of,
example.barracuda.com. The entry must be lowercase.
Backup Domain Controller Hostnames: if backup domain controllers have been configured
then these should be added here. This list should contain active controllers, which the
appliance can fail over to in the event the primary domain controller is inaccessible. For more
information on backup domain controllers refer to the section titled, Backup Domain