VPN User
Role
The view_vpn_users
role is required to view this screen. The manage_vpn_users
role is required to view the username of the VPN users.
VPN users are pre-configured username/password pairs that can be enabled (activated) from the ZEM web interface, with an automatic expiry window. While activated, these credentials can be used to remotely gain access to the network.
Fields
Role
The manage_vpn_users
role is required to use this feature.
In this section, the fields that are available when adding or updating a VPN user are described.
Owner
The owner of the VPN user. This is generally the name of the person that the VPN user is associated with.
Phone
The phone number to be used to contact the user.
Username
The username of the VPN user that will be used to connect to the VPN. This is auto-generated by default. Note that the username of VPN users is only visible to users with the manage_vpn_users
role.
Role
Role
The create_new_vpn_user_roles
role is required to create new roles for VPN users.
One role can be assigned to each VPN user. These are separate from the ZEM roles and are only used for VPN users. Any user that is privileged to create new VPN users can assign existing roles to VPN users. When a user is activated, this role is dispatched to the corresponding handler, and it may as such influence the functionality provided to this user.
VPN user activity
Role
The view_vpn_user_log
role is required to use this feature.
The VPN user activity log shows all the past events (activations, mutations, etc.) related to the VPN user(s). Logs can be viewed either per-user by clicking the button in the grid on the user row, or globally by clicking the button at the top of the page.
Working with VPN users
Role
The toggle_vpn_users
role is required to use this feature.
VPN Users can be activated for a single session with a pre-set duration with a one-time password, granting the user access to the network. When the session expires, the user will lose access until the VPN user is reactivated. Active VPN users can also be deactivated manually at any time.
Active VPN user
Active VPN users are shown in the VPN user grid with a green hue and show a deactivation switch with a timestamp signaling when the VPN user will lose access.
Activating VPN users
To activate an inactive VPN user, click the Activate
(shown below) switch on the VPN user grid.
This will show the following screen:
Password
The randomly generated password that the VPN user will use to connect to the VPN. It's recommended to use this generated password for the session.
Duration
The duration of the session, during which the VPN user will have access to the VPN. Available duration options may vary depending on your site.
Deactivating VPN users
To deactivate an active VPN user manually, click the deactivate switch on the VPN user grid.
This will show the following screen:
Click the Ok
button to deactivate the VPN user. The VPN user will then lose access to the VPN immediately.