Ike authentication with preshared key, Ike authentication with certificates, Authorized users list – RCA 608WL User Manual

Page 201: Chapter 5

Advertising
background image

Chapter 5

Expert Configuration

E-DOC-CTC-20041126-0013 v1.0

199

IKE Authentication with

Preshared Key

When you select Use Preshared Key Authentication, the following fields have to be
completed:



Preshared Secret

:

See

“ IKE Authentication with Preshared Key” on page 195

.



Confirm Secret

:

See

“ IKE Authentication with Preshared Key” on page 195

.



Local ID Type

and Local ID:

The Local ID identifies the VPN server during the Phase 1 negotiation with the
remote VPN client. This identity must match the settings in the VPN client. For
more information about matching the settings of the built-in VPN client of the
SpeedTouch™, see

“ Server IP Address or FQDN” on page 194

.



Remote ID (Filter) Type

and Remote ID Filter:

The Remote ID Filter identifies the VPN client during the Phase 1 negotiation.
This identity is used as a filter for VPN clients when they join the VPN. Its value
must match the settings in the VPN client.
A SpeedTouch™ VPN client identifies itself with a userfqdn in the form of a
unique e-mail address, when generic is selected for the Server Vendor. In order
to make the configuration of the VPN server independent of the number of VPN
clients, wildcards can be used. For example, *.corporate.net will match with
any e-mail address in the domain corporate.net.

IKE Authentication with

Certificates

See

“ IKE Authentication with Certificates” on page 191

.

Authorized Users List

When you selected the use of XAuth (either generic or chap) in the VPN Server
Configuration

page, then clicking Apply reveals an additional section at the top of

the page.
Proceed as follows to compose a list of authorized users for the VPN:

1

Enter a User name and corresponding Password.

2

Click Add User.

Repeat the previous steps for each individual VPN client you want to grant access to
the VPN.

If you encounter problems during the IKE negotiations, use the Debug >
Logging

page to verify that the Identity Type and Identity of VPN client and

server correspond with each other.

Advertising
This manual is related to the following products:

620