Netgear SRX5308 Specifications Page 176

  • Download
  • Add to my manuals
  • Print
  • Page
    / 357
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 175
Virtual Private Networking Using IPSec Connections
176
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
3. Click Apply to save your settings.
Note: You select the RADIUS authentication protocol (PAP or CHAP) on
the Edit IKE Policy screen or Add IKE Policy screen (see Configure
XAUTH for VPN Clients on page 173).
Assign IP Addresses to Remote Users (Mode Config)
To simplify the process of connecting remote VPN clients to the VPN firewall, use the Mode
Config feature to assign IP addresses to remote users, including a network access IP
address, subnet mask, WINS server, and DNS address from the VPN firewall. Remote users
are given IP addresses available in a secured network space so that remote users appear as
seamless extensions of the network.
Mode Config Operation
After the IKE Phase 1 negotiation is complete, the VPN connection initiator (which is the
remote user with a VPN client) requests the IP configuration settings such as the IP address,
subnet mask, WINS server, and DNS address from the VPN firewall. The Mode Config
feature allocates an IP address from the configured IP address pool and activates a
temporary IPSec policy, using the information that is specified in the Traffic Tunnel Security
Level section of the Mode Config record (on the Add Mode Config Record screen that is
shown in Figure 110 on page 178).
Backup Server IP Address The IP address of the backup RADIUS server.
Secret Phrase A shared secret phrase to authenticate the transactions between the client
and the backup RADIUS server. The same secret phrase needs to be
configured on both the client and the server.
Backup Server NAS
Identifier
The backup NAS identifier that needs to be present in a RADIUS request.
Note: See the note earlier in this table for the Primary Server NAS Identifier.
Connection Configuration
Time out period The period in seconds that the VPN firewall waits for a response from a
RADIUS server.
Maximum Retry Counts The maximum number of times that the VPN firewall attempts to connect to
a RADIUS server.
Table 42. RADIUS Client screen settings (continued)
Settings Description
Page view 175
1 2 ... 171 172 173 174 175 176 177 178 179 180 181 ... 356 357

Comments to this Manuals

No comments