Configuring the domain policy, Configuring the domain, Policy – H3C Technologies H3C SecPath F1000-E User Manual
Page 376

364
Configuring the domain policy
Select VPN > SSL VPN > Domain Management > Basic Configuration from the navigation tree. The
Domain Policy tab appears, as shown in
Figure 247 Basic domain policy
Table 49 Configuration items
Item Description
Enable security check
Select this item to enable security check.
With security check enabled, the SSL VPN system checks a user host based on the
security policy and determines whether to allow the user to access resources according
to the check result.
IMPORTANT:
To implement user host security check, you must also configure the security policy. See
"
Use verification code
Select this item to use verification codes.
After you select this item, users must enter the correct verification codes to log in to the
SSL VPN system.
Enable separate
client
Select this item to enable the separate client function.
After a user logs in to SSL VPN, the SSL VPN client automatically runs. With separate
client enabled, the system automatically closes the SSL VPN Web interface, leaving the
client software running alone.
Enable MAC address
binding
Select this item to enable MAC address binding.
With MAC address binding enabled, the SSL VPN system obtains the MAC address of
a user when the user logs in, for user identity authentication or MAC address learning.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS