Specifications

Manage Users, Authentication, and VPN Certificates
307
ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
Note: A combination of local and external authentication is supported.
WARNING:
If you disable local authentication, make sure that there is at least
one external administrative user; otherwise, access to the VPN
firewall is blocked.
6. If you do change local authentication, click Apply in the Domain screen to save your
settings.
To delete one or more domains:
1. In the List of Domains table, select the check box to the left of each domain that you
want to delete, or click the Select All table button to select all domains.
2. Click the Delete table button.
Note: You cannot delete the geardomain default domain.
Edit Domains
To edit a domain:
1. Select Users > Domains. The Domains
screen displays (see Figure 201 on page 304).
2. In the Action column of the List of Domains table, click the Edit
table button for the domain
that you want to edit. The Edit Domains screen displays. This screen is similar to the Add
Domains screen (see the previous figure).
3. Modify the settings as described in the previous table. (You cannot modify the Domain
Name and
Authentication Type fields.)
4. Click Apply to save your changes. The modified domain is displayed in the List of Domains
table.
Note: You cannot edit the geardomain default domain.
Configure Groups
The use of groups simplifies the configuration of VPN policies when different sets of users
have different restrictions and access controls. It also simplifies the configuration of web
access exception rules. Like the default domain of the VPN firewall, the default group is also
named geardomain. The default group geardomain is assigned to the default domain
geardomain. You cannot delete the default domain geardomain, nor its associated default
group geardomain.