How to Use File Sharing Protection in Secure Access Gateway - AnySecura Manual

This guide will help you configure the File Sharing Protection feature within AnySecura's Secure Access Gateway. You'll learn how to define precisely which servers and ports are protected, ensuring that only authorized machines can access your critical network shares.

By understanding these settings, you can effectively control access within complex network environments, including those using NAT. This allows you to secure your shared directories while maintaining seamless, encrypted file transfers for your users.

AnySecura File Sharing Protection interface


File sharing protection, used in conjunction with the encryption client, ensures that only specified machines can access the protected network shared document directory. Additionally, files copied from the client to the protected shared directory are decrypted, while files copied from the shared directory to the client are encrypted.

Go to "File Sharing Protection" to set the IP and port information of the file sharing server protected by the Secure Access Gateway device.

The configuration options for file sharing protection are as follows:

Setting Item Description
Port Settings Default Ports: Select this option to protect the common shared ports 139 and 445 (this option is selected by default).
All Ports: Select this option to protect all ports.
Custom Ports: Select this option and enter the port number to protect the entered port.
Disable NAT (Network Address Translation) If this option is not selected, in a NAT device (router, wireless router, etc.) architecture, as long as one computer can access the protected shared folder, other devices connected to that NAT device will also be allowed access.
If this option is selected, no devices in the NAT architecture will be able to access the protected shared folder.

This setting does not support virtual environments: Whether or not this option is selected, if the virtual environment connects to the network via NAT mode through a physical host, the virtual environment's access to the shared folder will be the same as the host.
IP Settings Set the IP addresses of the file sharing servers protected by the Secure Access Gateway. Supports entering IP ranges, and multiple IP addresses should be separated by commas (e.g., 192.168.1.1-192.168.1.100, 192.168.2.102).

Note

To use this feature, once the protected file sharing server is set, encryption must be enabled for clients in the AnySecura console. Additionally, in "Encryption -> Secure Communication Settings -> Network Shared Document Protection," enable "Protection for Network Shared Document Directory" and configure the necessary settings.