Switch to full style
Use this forum to post questions relating to WinGate, feature requests, technical or configuration problems
Post a reply

some questions for the user assumption & UDP forwarding

Oct 11 05 3:40 pm

hi,guys:
i created a network surrounding : every outbound connection will be authenticated through the WG server, but my DNS relay Server is the LAN,too. so i need a assumption user for the Dns server: i created a user "dns" ,which is not in any group. and then i added a row in the "Assumed Users" ,Assumed by IP :192.168.0.253 <-> dns (253 is the Dns ip-addr). UDP(53) seemed can be forwarded well. but some other TCP services couldn't :( , after i logon with the "dns " user , the tcp connections could be forwarded .

another question : i noticed the elder version 5 had the same problem , the user authentication was not available to the UDP traffic ,eg some IM software, after i upgraded the ver6 ,the bug seemed still existed , but bug is bug ,this software is still GREAT & STRONG, i like it

takusa

Oct 14 05 8:59 am

Hi

There are 3 levels of security in WinGate - none, assumed, and authenticated. If your policies require a user to be authenticated, then the user must be able to authenticate.

DNS does not have a mechanism for authentication, so things like UDP mappings, or TCP mappings will not work if the policy requires the user tobe authenticated UNLESS the user authenticates by some other means first (i.e. Java login, some other login client, GateKeeper etc).

If you want a certain assumed user to have access (i.e. your DNS server), you can add a policy for the service, where user is your dns server, and user may be assumed.

Regards

Adrien
Post a reply