Smoothwall Filter (On Premise)

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Administrators of Smoothwall should be authentiated via Active Directory/RADIUS (i.e. not local users)

    Currently administrators of Smoothwall are local users. I'd like to be able to integrate the administrators to Active Directory or RADIUS..... i.e. no local users. The same could be said for Portal Users. I don't want to have to administer a whole host of local users and passwords.

    177 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    under review  ·  6 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  2. IDex Agent exclude specific usernames

    Some desktop software uses it's own domain user account to authenticate and communicate with servers. This can cause that user to be logged-in on that workstation rather than the real user.

    Option to configure a list of usernames that IDex should ignore if seen by the Agent.

    Workaround: Change service usernames to include a $ symbol at the end and they will be ignored by IDex Agent.

    57 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    12 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
    under review  ·  Chris Humby responded

    We’re planning a small bug-fix update to IDex Agent soon.

    If there’s time I’d like to include this feature request too. For now this would likely be an additional configuration field where a list of usernames to exclude can be specified.

    Would this fulfil your requirements? Please add your comments to the discussion on uservoice.

  3. Improve BYOD Roaming by Using Fast Reconnect Equivalent

    Improve BYOD Roaming by Using Fast Reconnect Equivalent
    Use the Linux equivalent by enabling TLS caching "use_tunneled_reply" so that roaming works seamlessly from one AP to the next, which it does not do reliably at the moment.

    48 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    started  ·  3 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  4. Smoothwall SAML Integration

    Smoothwall customers are increasingly using cloud based services and federating with external user repositories, such as Azure AD/Office 365.

    Most of these cloud based directories allow integarion with SAML.  Please considering implementing SAML integarion with Smoothwall

    43 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  5. SSL VPN Certificate

    Can you update the VPN subsystem so that the certificate is generated with SHA256 (or better) instaead of md5, as newer versions of OpenVPN clients don't support md5 hash algorithms.

    21 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  6. Group Mapping to AD OUs

    Mapping users to Smoothwall groups from Organisational Units in Active Directory would be more useful than the current: by AD security group.

    21 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  7. IDex Agent replicate all groups on first install

    IDex Agent by default replicates AD group overnight, however on new install it would be useful if it did this once automatically to allow group mapping.

    Current workaround is to use manual command; https://kb.smoothwall.net/Content/authentication/idexdirectory-synchronize.htm

    20 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  8. IDex Client - Identification only mode

    Allow IDex Client to work in an Identification only mode so it provides user and group information to Smoothwall so it can be associate to the Client IP but does require it to be used as a proxy service.

    Web traffic could be then filtered using any transparent / non-transparent core auth policy.

    18 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  9. Authentication recovery if directory server not available on boot

    If no domain controller is available when Smoothwall starts up, it goes into a state where users cannot authenticate through NTLM even if the domain controller server subsequently becomes available. I am not sure whether this applies to any other forms of authentication. Users receive the NTLM authentication failure message and "Ntlm_auth: Unable to authenticate user" is logged in the authentication log. Authentication can be restored by a restart of the Smoothwall or disabling the active directory authentication entry and then reenabling it, just restarting the authentication service does not seem to be enough.

    This is an issue when a…

    17 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  10. Guest Portal

    Add a guest portal that allows us to authenticate external users by registering for an account, that then can be reported on by name rather than just MAC address. Need for liability coverage and identification.

    17 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  11. IDex SSO support for Smoothwall Portal access

    Ability to access the Smoothwall portal with SSO using the username provided by IDex Client or Agent.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  12. Have a clear cache button for the Authentication Service

    Have a button to clear the Authentication cache in the case of Authentication issues instead of enabling / disabling to clear

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  13. Search by Username option in Authentication>UserActivity

    It would be nice if there was a search option feature on the Authentication>UserActivity screen to search for a specific user name to force a user log off. Currently, the logs are too large to "catch" an entry.

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  14. Local User account : User should be able to change their own password

    I am using smoothwall from the last 3 year it works really well the only issue I find that USER want to change their own password. IT will be really nice if you can provide this feature.

    10 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  15. Roadwarriors Security

    On the Network -> VPN -> SSL roadwarriors page new groups are enabled by default. I feel all groups should be disabled unless specifically enabled. Thanks.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  16. API for local user accounts management

    My organization has to use the local users authentication option for Smoothwall, located under Services > Directories. As there are a lot of users, loading this up and finding the user is very unwieldy.

    Can smoothwall expose an API for basic user account manipulation, i.e. changing a user's group, resetting the password, and adding a new user?

    Honestly 90% of the UI loading is unnecessary and the page is not user friendly at all for a large number of users. An API would allow me to add something to my organization's own internal apps that would help centralize this function…

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  17. authenticate

    More meaningful information when 'authd[6551]: Ntlm_auth: [DomainName] Unable to authenticate user' is logged. Ideally source IP address, Domain controller being used to authenticate and if available Username presented for authentication.

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  18. user activity multi log off

    User Activity Page.

    Added option of a tick box besides each user logged on so that anyone and any multi numbers users could be logged off at once.

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  19. needs a better search to kick users off user activity page

    currently we have 97 pages of 20, if we ask all to load it takes ages and IE thinks its crashed

    5 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
  20. Force Google sign in on SSL login page

    The SSL login page is enabled for Google sign in but users are still able to authenticate using OD or AD credentials. We would like to see the option to customise the login page so that users are asked for OD/AD login or Google login, not both.

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1
  • Don't see your idea?

Feedback and Knowledge Base