Securing "RMS Connect" > "Remote Access" > HTTP/HTTPS

When i add a remote access to web page behind a RUT200 like this:

Everyone who knows or guess this link can access the website without further authentication.
Is this expected behaviour? I know that i could implement authentication on the exposed web page. But expecially SCADA/PLC systems sometimes expose already sensitive data without logging in. So it would be nice if the proxy forces authentication before directing to the exposed website.

Did I overlooked something or can authentication be added to the remote access?

