Authentication servers – Panasonic NN46110-600 User Manual

Page 28

Attention! The text in this document has been recognized automatically. To view the original document, you can use the "Original mode".

Advertising
background image

18 Chapter 1 Authentication services

Certificate payload transports certificates or other certificate-related information

through ISAKMP and can appear in any ISAKMP message. Certificate payloads

are included in an exchange whenever an appropriate directory service (such as
Secure DNS) is not available to distribute certificates. The VPN Router supports

Microsoft native client (L2TP/IPsec) PKCS #7 termination in chained
environments.

Using certificates for tunnel connections requires the creation of a public key

infrastructure (PKI) to issue and manage certificates for remote users and VPN

Router servers.

Authentication servers

The VPN Router supports LDAP and RADIUS authentication servers. The VPN

Router always attempts to authenticate a remote user against the internal or

external LDAP profiles.

Note:

If you authenticate using RADIUS or LDAP authentication, you

must use unique names for the Group ID and User ID.

Figure 2 shows a VPN Router and authentication servers.

NN46110-600

Advertising