I have discovered that it is possible to browse unintended web pages after logging on any device using web session (for example you can visit youtube, amazon, etc from firewall management). To prevent those kind of events, is it possible to add something like web-inspect element (for example firewall vendor logo) and make PAM disconnect the session whenever this element is not present on this webpage.
By default, senhasegura is configured to prevent browsing on any websites other than those previously registered. This means that it is usually not possible to access unintended web pages through managed sessions. If you need further clarification or to check specific settings, I recommend opening a support ticket for additional assistance.
I don’t want bother support team. That’s why I’m trying to get answer here.
Also sometimes I have situation, when I log into firewall from PAM using web browser and in firewall I have to open some statistics page (for example) which requires authentication, so it means that I have to use some user and password. Is it possible to authenticate on statistic page from PAM, when I already authenticated in Firewall?
I understand your concern, but there are certain issues that are complex and best addressed directly by the support team. This specific situation involving multiple authentications through the firewall is one example. I recommend contacting support to ensure you receive detailed guidance specific to your case.