Remote-type – Brocade Mobility RFS Controller CLI Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 628

Advertising
background image

Brocade Mobility RFS Controller CLI Reference Guide

615

53-1003098-01

7

Remote VPN client:

rfs4000-229D58(config-device-00-23-68-22-9D-58-cryptomap-test#2)#pfs 14

rfs4000-229D58(config-device-00-23-68-22-9D-58-cryptomap-test#2)#show context

crypto map test 2 ipsec-isakmp dynamic

peer 1 ikev1 RemoteIKEv1Peer1

local-endpoint-ip 157.235.204.62

pfs 14

rfs4000-229D58(config-device-00-23-68-22-9D-58-cryptomap-test#2)#

remote-type

crypto-map auto-vpn-tunnel/remote-vpn-client instance

Configures the remote VPN client type as either None or XAuth

Supported in the following platforms:

Access Points — Brocade Mobility 650 Access Point, Brocade Mobility 6511 Access Point,
Brocade Mobility 1220 Access Point, Brocade Mobility 71XX Access Point, Brocade
Mobility 1240 Access Point

Wireless Controllers — Brocade Mobility RFS4000, Brocade Mobility RFS6000, Brocade
Mobility RFS7000

Service Platforms — Brocade Mobility RFS9510

Syntax:

remote-type [none|xauth]

Parameters

remote-type [none|xauth]

Example

Remote VPN client:

rfs4000-229D58(config-device-00-23-68-22-9D-58-cryptomap-test#2)#remote-type

none

rfs4000-229D58(config-device-00-23-68-22-9D-58-cryptomap-test#2)#show context

crypto map test 2 ipsec-isakmp dynamic

peer 1 ikev1 RemoteIKEv1Peer1

local-endpoint-ip 157.235.204.62

pfs 14

remote-type none

rfs4000-229D58(config-device-00-23-68-22-9D-58-cryptomap-test#2)#

remote-type [none|xauth]

Specify the remote VPN’s client type

none – Specifies remote VPN client with No XAUTH

xauth – Specify remote VPN client as using XAUTH (applicable only for IKEv1). This is the default
setting

XAuth (extended authentication) provides additional authentication validation by permitting an edge
device to request extended authentication information from an IPSec host. This forces the host to
respond with additional authentication credentials. The edge device respond with a failed or passed
message. The default setting is XAuth.

Advertising