IDP activation
Hello, I have found that I am missing active IDP setting in the Security Policy. Could someone please advise me, if IDP is generally set in "WAN to LAN" line and just activate IDP?
Should I possibly prepare for the possibility of some non-functional services (RDP ...) after this activation?
Thank you for your help !
0
All Replies
-
What model and firmware version are you using?
0 -
An identity provider (IdP) is a service that stores and verifies user identity. IdPs are typically cloud-hosted services, and they often work with single sign-on (SSO) providers to authenticate users.
0 -
kyssling said:Hello, I have found that I am missing active IDP setting in the Security Policy. Could someone please advise me, if IDP is generally set in "WAN to LAN" line and just activate IDP?Should I possibly prepare for the possibility of some non-functional services (RDP ...) after this activation?Thank you for your help !He ive wintessed this. I have all services activated & licenced but when you create a security policy you can choose ADP, content filter SSL some other one but no IDPI figured i missed some thing, I plan to go back to look at this with more time next week(was a FLEX 200 BTW)
0 -
Hi i use Zyxel USG110 with FW:V4.70(AAPH.0)ITS-WK46-r102519 and mean IDP here ...
0 -
Hi @kyssling,You may create a security rule for the IDP profile that blocks the service from WAN to LAN.If you are concerned that the RDP service will be blocked when IDP is activated. You may edit the Signature Group of the IDP profile, inactivate the RDP service.Or if you are concerned that the other services will be blocked, you can create an IDP profile and set action to "none" and "log" to detect which related service is used, then inactivate the service in the IDP profile.
BR,
James0 -
Hello, someone has it turned on in practice ?
We use only RDP over VPN ... Thank you ...
0 -
Does anyone have experience with checked iDP ? Vaclav
0 -
@kyssling, you may try inactive RDP service in the IDP profile. RDP over VPN is feasible.
0 -
Thank you, and are you use it in a real environment ?
0 -
@kyssling, yes, I have a VPN scenario that connects to USG110 through IPsec VPN, and enables the IDP profile which inactive RDP service. It works.
0
Categories
- 8.5K All Categories
- 1.6K Nebula
- 72 Nebula Ideas
- 57 Nebula Status and Incidents
- 4.5K Security
- 227 Security Ideas
- 986 Switch
- 46 Switch Ideas
- 883 WirelessLAN
- 24 WLAN Ideas
- 5.2K Consumer Product
- 158 Service & License
- 280 News and Release
- 61 Security Advisories
- 13 Education Center
- 581 FAQ
- 263 Nebula FAQ
- 160 Security FAQ
- 76 Switch FAQ
- 75 WirelessLAN FAQ
- 7 Consumer Product FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 62 About Community
- 46 Security Highlight