Logon Agent

Logon Agent can be installed on Windows or Linux, and works with the logon application installed on Windows or Mac clients.

Logon Agent can communicate with Windows Active Directory, and uses information sent by the logon application to authenticate user logon sessions from all Windows domains in your network. The agent stores authenticated user name/IP address pairs in a user map in local memory.

Multiple Logon Agent instances can be used if required; this may benefit larger networks (see Logon Agent deployment).

Filtering Service uses the information provided by Logon Agent to apply policies to logged-on users.

A Logon Agent installation includes the following files:

Filename Location Functionality
AuthServer.exe Websense\Web Security\ bin or /opt/Websense/bin/ Runs as the Websense Logon Agent service.

The Logon Agent executable sends new entries to Filtering Service and receives configuration information from the Forcepoint Security Manager.

Uses port 30602 by default.

LogonApp.exe Websense\Web Security\ bin\LogonApp\Windows\ x64 or \x86

Activated on Windows client machines by a logon script (logon.bat).

Captures user logon sessions as they occur.

logon.bat Websense\Web Security\ bin\LogonApp\Windows Invokes LogonApp.exe (the Windows logon application).
LogonApp.tar.gz Websense\Web Security\ bin\LogonApp\Mac Contains an install script that, when run on Mac client machines, installs the logon application.
AuthServer.bak Websense\Web Security\ bin\ or /opt/Websense/

Backup copy of the Logon Agent user name/IP address map.

Read at startup.

AuthServer.ini Websense\Web Security\ bin\ or /opt/Websense/ Contains one initialization parameter for Logon Agent.