User`s guide
AT&T Global Network Client for Windows Administrator’s Guide
© 2015 AT&T Intellectual Property. All rights reserved. AT&T, the AT&T logo and all other AT&T marks contained herein are trademarks of AT&T Intellectual Property and/or
AT&T affiliated companies. All other marks contained herein are the property of their respective owners. Images are shown for illustrative purposes only; individual
experience may vary. This document is not an offer, commitment, representation or warranty by AT&T and is subject to change.
Windows is a registered trademark of Microsoft Corporation in the United States and other countries.
-142-
SLA Data
Collection,
Configuration
Settings
HTTP/TCP:80
Figure 53: Client Firewall Configuration Table
Dial Authentication
The AT&T Global Network Client uses a proprietary enhanced authentication process using TCP:5053.
A customization could be made to the AT&T Global Network Client to disable enhanced authentication
and use PAP, but it is not recommended. If disabled, the following consequences would occur:
• Meaningful error messages are lost. Instead of "invalid user ID", "expired password", "revoked
password", etc. the user only sees "authentication failed."
• Login retries are lost. The user must redial to change user ID or password.
• The ability to warn a user if a closer access number is available is lost.
• Ability to change passwords is lost.
• The AT&T helpdesk will not provide first-level support without special arrangements
Disconnect warning
The AT&T Global Network Client communicates with the dialed gateway after connecting using UDP port
7000 to be notified of pending disconnects. Disconnect time limits are configured in the AT&T
administration server. If the connection is idle for the specified amount of time a datagram is sent from
the gateway to the AT&T Global Network Client and the AT&T Global Network Client displays a warning
that the connection will be disconnected in 1 minute unless the user takes the appropriate action.
Maximum inactivity timeouts are set in the AT&T Configuration Server at the account level. The AT&T
gateways will timeout inactive connections regardless of the remote access software used. The warning
will only be displayed if the AT&T Global Network Client is allowed to communicate on UDP port 7000.
Software updates
The AT&T Global Network Client periodically checks for and downloads updates to the software using
anonymous FTP (TCP ports 20 and 21).
SLA data collection
The AT&T Global Network Client uploads data about all connection attempts using HTTP (TCP port 80) to
a server after connecting. This data is used for measuring SLAs (Service Level Agreements). If the SLA
data is not collected, AT&T will not provide service-level guarantees.
AT&T requires companies to add policy rules to their firewalls to allow SLA data to be sent to those
servers.
Configuration Updates
The AT&T Global Network Client requests configuration settings (like start page, e-mail server, proxy
server, etc) from an AT&T administration server. The AT&T Global Network Client updates third-party e-