some questions for the user assumption & UDP forwarding

Use this forum to post questions relating to WinGate, feature requests, technical or configuration problems

Moderator: Qbik Staff

some questions for the user assumption & UDP forwarding

Postby takusa100 » Oct 11 05 3:40 pm

hi,guys:
i created a network surrounding : every outbound connection will be authenticated through the WG server, but my DNS relay Server is the LAN,too. so i need a assumption user for the Dns server: i created a user "dns" ,which is not in any group. and then i added a row in the "Assumed Users" ,Assumed by IP :192.168.0.253 <-> dns (253 is the Dns ip-addr). UDP(53) seemed can be forwarded well. but some other TCP services couldn't :( , after i logon with the "dns " user , the tcp connections could be forwarded .

another question : i noticed the elder version 5 had the same problem , the user authentication was not available to the UDP traffic ,eg some IM software, after i upgraded the ver6 ,the bug seemed still existed , but bug is bug ,this software is still GREAT & STRONG, i like it

takusa
takusa100
 
Posts: 47
Joined: Sep 29 05 9:55 pm
Location: NC China motherland

Postby adrien » Oct 14 05 8:59 am

Hi

There are 3 levels of security in WinGate - none, assumed, and authenticated. If your policies require a user to be authenticated, then the user must be able to authenticate.

DNS does not have a mechanism for authentication, so things like UDP mappings, or TCP mappings will not work if the policy requires the user tobe authenticated UNLESS the user authenticates by some other means first (i.e. Java login, some other login client, GateKeeper etc).

If you want a certain assumed user to have access (i.e. your DNS server), you can add a policy for the service, where user is your dns server, and user may be assumed.

Regards

Adrien
adrien
Qbik Staff
 
Posts: 5448
Joined: Sep 03 03 2:54 pm
Location: Auckland


Return to WinGate

Who is online

Users browsing this forum: No registered users and 9 guests