After you complete the configuration, the policy must be bound to the global or virtual server level to make it active. Refer to the upcoming section on how to bind the authentication policy. Client Certificate Authentication Along with the normal username and password for the user s authentication, a user can be authenticated using attributes from a client SSL certificate that is presented to the Access Gateway s virtual server. In order to authenticate users based on a client-side certificate, you need to enable client authentication on the virtual server and request the certificate. To enable client certificate authentication using the Configuration Utility, follow these steps: 1. In the left pane of the Configuration Utility, click SSL VPN. 2. In the left pane, click Global. 3. Under Authentication, click Authentication Settings. 4. In the Maximum Number of Users field, type the number of users who can be authenticated using the client certificate. 5. In Default Authentication Type, select Cert. 6. In User Name Field, type the name of the certificate field that holds the user names. 7. In Group Name Field, type the name of the certificate field that holds the group name. Then click OK. When the certificate is installed on the Access Gateway, enable client certificate authentication. You can do this using the command-line interface or the SSL VPN Policy Manager. To enable client authentication using the command-line interface, at a command prompt type the following:
it around on the page. The effect should remind you of editing a path with the Shape Tool this child blend object is a node, and you alter the path of the blend by moving this object.
Several fundamental processes must be taken into consideration when biometric technology is integrated into an application as the authentication mechanism. Figure 10-1 shows the relationship between a typical application for biometric verification, consisting of Data Collection, Signal Processing, Matching, Decision and Storage.
