User`s guide

AT&T Global Network Client for Windows Administrator’s Guide
© 2015 AT&T Intellectual Property. All rights reserved. AT&T, the AT&T logo and all other AT&T marks contained herein are trademarks of AT&T Intellectual Property and/or
AT&T affiliated companies. All other marks contained herein are the property of their respective owners. Images are shown for illustrative purposes only; individual
experience may vary. This document is not an offer, commitment, representation or warranty by AT&T and is subject to change.
Windows is a registered trademark of Microsoft Corporation in the United States and other countries.
-142-
SLA Data
Collection,
Configuration
Settings
HTTP/TCP:80
Figure 53: Client Firewall Configuration Table
Dial Authentication
The AT&T Global Network Client uses a proprietary enhanced authentication process using TCP:5053.
A customization could be made to the AT&T Global Network Client to disable enhanced authentication
and use PAP, but it is not recommended. If disabled, the following consequences would occur:
Meaningful error messages are lost. Instead of "invalid user ID", "expired password", "revoked
password", etc. the user only sees "authentication failed."
Login retries are lost. The user must redial to change user ID or password.
The ability to warn a user if a closer access number is available is lost.
Ability to change passwords is lost.
The AT&T helpdesk will not provide first-level support without special arrangements
Disconnect warning
The AT&T Global Network Client communicates with the dialed gateway after connecting using UDP port
7000 to be notified of pending disconnects. Disconnect time limits are configured in the AT&T
administration server. If the connection is idle for the specified amount of time a datagram is sent from
the gateway to the AT&T Global Network Client and the AT&T Global Network Client displays a warning
that the connection will be disconnected in 1 minute unless the user takes the appropriate action.
Maximum inactivity timeouts are set in the AT&T Configuration Server at the account level. The AT&T
gateways will timeout inactive connections regardless of the remote access software used. The warning
will only be displayed if the AT&T Global Network Client is allowed to communicate on UDP port 7000.
Software updates
The AT&T Global Network Client periodically checks for and downloads updates to the software using
anonymous FTP (TCP ports 20 and 21).
SLA data collection
The AT&T Global Network Client uploads data about all connection attempts using HTTP (TCP port 80) to
a server after connecting. This data is used for measuring SLAs (Service Level Agreements). If the SLA
data is not collected, AT&T will not provide service-level guarantees.
AT&T requires companies to add policy rules to their firewalls to allow SLA data to be sent to those
servers.
Configuration Updates
The AT&T Global Network Client requests configuration settings (like start page, e-mail server, proxy
server, etc) from an AT&T administration server. The AT&T Global Network Client updates third-party e-