This section allows configuring how the web portal can be accessed.
Domain Authentication
Users are authenticated looking at their parent domain. Each domain has its own Authentication Method. From this tab, you can define how each domain must be authenticated when logging into the LibraCyber ESG Web Portal.
In this table are displayed all the appliance domains, you can filter them out by performing a Search from the table toolbar. You can see all the Authentication Methods set for a domain by clicking on the arrow at the left of each domain.
To add an Authentication Method you have to click on the New button in the domain child table appeared.
In the dialog appeared you can choose an available Authentication Method for the domain. To learn more about all the supported Authentication Methods you can read the Web Portal Authentication Methods knowledge base.
Note: the default authentication method is via the local database.
Login Authorized Networks
By default logins are permitted from any network. This functionality permits the login to the web portal only from a definite set of source networks. Each user type has its own permission, so you can, for example, restrict the login as Administrator only from a specified IP address or network.
In the table are displayed all the Permitted Networks configured and the associated User Role. You can filter out the table entries by performing a Search and Export results in common format such as PDF and CSV. You can remove one or more entries from the table by selecting them and clicking on the Delete button from the table toolbar.
To add a new Permitted Network you can click the New button from the table toolbar and fill in the gaps of the dialog appeared.
Note: the network must be in the CIDR format (e.g. 192.168.0.0/24).
Safe Learn Networks
Safe Learn Networks contains a list of pre-authorized networks from which an anonymous user can take actions on messages. The affected actions are the quarantine actions (release, welcomelist, mark as bad etc...). When a proper authentication cannot be configured, a safe learn network can ease the quarantine management.
Note: actions made from a safe learn network will be shown as done by user WEB-ANON in the audit log.
You can Allow Anonymous User actions:
- Only from Safe Learn Networks
- From any address (unsafe)
In the table are displayed all the Safe Learn Networks set. You can filter out displayed results by performing a Search or Export the entries in common format such as CSV and PDF. You can remove one or more entries from the table by selecting them and clicking the Delete button from the table toolbar.
To add a Safe Learn Network you have to click on the New button in the table toolbar and fill in the gaps of the displayed dialog as shown below and click on the green Save button.
Note: in the Address field you have to type a CIDR formatted network (e.g. 192.168.0.0/24).
API Service
The API service has been disabled by default on all the appliances, to reduce the attack surface.
To correctly used the Mobile App and the Outlook Plugin is necessary to switch on the API Service from this interface