User guide

Defining Firebox Users and Groups for Authentication
User Guide 133
computers. As your organization changes, you can add or remove users
or systems from groups.
N
OTE
You can define only a limited number of Firebox users. If you have more
than approximately 100 users to authenticate, WatchGuard recommends
that you use a third-party authentication server.
WatchGuard automatically adds two groups–intended for remote
users–to the basic configuration file:
ipsec_users
Add the names of authorized users of MUVPN.
pptp_users
Add the names of authorized users of RUVPN with PPTP.
You can use Policy Manager to add, edit, or delete other groups to the
configuration file or to add or modify the users within a group.
From Policy Manager:
1 Select Setup => Authentication Servers.
The Authentication Servers dialog box appears, as shown in the following figure.
2 To add a new group, click the Add button beneath the Groups list.
The Add Firebox Group dialog box appears.
3 Type the name of the group. Click OK.