cancel
Showing results for 
Search instead for 
Did you mean: 
Charis
Level 7

Web Gateway integrated with 2 Active Directories

Hi everyone,

I want some advices whether is possible to have the Web Gateway integrated with 2 different Active Directory Servers. These Servers are not working as Primary or Backup and there is no trust between them.

Two completely different structures on different domains.

Does anyone faced that before, and if yes how did he proceed with the configuration?

Best Regards,

Charis

0 Kudos
4 Replies
McAfee Employee

Re: Web Gateway integrated with 2 Active Directories

Hello Charis!

The MWG can definitly work with multiple Active Directory servers. Under User Management > Windows Domain Membership you can 'join' the Web Gateway to your individual domains. After that you can just configure the Web Gateway as you normally would.

Some notes before adding it to the domain, you must make sure that the Web Gateway can resolve the FQDN of your DC (so... hostname.domain.tld) otherwise you will have communication issues with the Web Gateway and the DC. If needed you can add an entry to the /etc/hosts file to allow the Web Gateway to resolve your DC to its IP address.

One other consideration, when setting up the Web Mapping, specifically a Group Mapping, you may or may not want to enable the option for 'Add domain name to group name (resulting in DOMAIN\group)' enabling this option in the mapping would allow you to create rules for specific the specific domain.

~Jon

0 Kudos
Charis
Level 7

Re: Web Gateway integrated with 2 Active Directories

Hi Jon

Thanks for your prompt reply. I think that the key is "to enable the option for 'Add domain name to group name (resulting in DOMAIN\group)' enabling this option in the mapping would allow you to create rules for specific the specific domain."

So through this I can have different groups that will belong to different domains and apply a policy on each one.

Thanks Jon,

Charis

0 Kudos
McAfee Employee

Re: Web Gateway integrated with 2 Active Directories

Hello again Charis,

You are correct, enabling that option will allow rules specific to be that domain.

~Jon

0 Kudos
Charis
Level 7

Re: Web Gateway integrated with 2 Active Directories

.

0 Kudos