Funkwerk WI2040n Manual de usuario Pagina 298

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 432
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 297
as a client:
• As a server the gateway requires a proof of authorisation.
• As a client the gateway provides proof of authorisation.
In server mode multiple users can obtain authentication via XAuth, e.g. users of Apple
iPhones. Authorisation is verified either on the basis of a list or via a Radius Server. If using
a one time password (OTP), the password check can be carried out by a token server (e.g.
SecOVID from Kobil), which is installed behind the Radius Server. If a company's
headquarters is connected to several branches via IPSec, several peers can be configured.
A specific user can then use the IPSec tunnel over various peers depending on the assign-
ment of various profiles. This is useful, for example, if an employee works alternately in dif-
ferent branches, if each peer represents a branch and if the employee wishes to have on-
site access to the tunnel.
XAuth is carried out once IPSec IKE (Phase 1) has been completed successfully and be-
fore IKE (Phase 2) begins.
If XAuth is used together with IKE Config Mode, the transactions for XAuth are carried out
before the transactions for IKE Config Mode.
16.1.4.1 New
Choose the New button to set up new profiles.
Fig. 117: VPN -> IPSec -> XAUTH Profiles -> New
The VPN -> IPSec -> XAUTH Profiles -> New menu consists of the following fields:
Fields in the XAUTH Profiles Basic Parameters menu
16 VPN Funkwerk Enterprise Communications GmbH
286 bintec WLAN and Industrial WLAN
Vista de pagina 297
1 2 ... 293 294 295 296 297 298 299 300 301 302 303 ... 431 432

Comentarios a estos manuales

Sin comentarios