Nortel 3050 Command Reference Manual page 210

Vpn gateway
Hide thumbs Also See for 3050:
Table of Contents

Advertisement

210 Command Reference
Table 67
SiteMinder Menu Options (/cfg/vpn/aaa/auth/siteminder) (cont'd.)
Command Syntax and Usage
scope <integer>
Copyright © 2007 Nortel Networks
.
true: Enables single sign-on. The VPN Gateway will automatically
log in a remote user to the VPN if the user has a valid SMSESSION
cookie from some other SiteMinder-enabled site. This works
as long as the VPN (e.g. vpn.example.com) and the other
SiteMinder-enabled site (e.g. a.example.com) are on the same
DNS domain. The SiteMinder session will however be invalidated
when the user logs out from the Portal, if the wipecookie
command (see
"/cfg/vpn <id> /server/portal Portal Server
Settings Configuration" (page
If the remote user logs in to vpn.example.com without a valid
SMSESSION cookie, the VPN Gateway will set the SMSESSION
cookie as a domain cookie. This way the user can auto-log in
to a.example.com. The SiteMinder session will however be
invalidated if the user logs out from the Portal.
false: Single sign-on is disabled.
Note: If sso is set to true but no display name or authentication order
is configured for the SiteMinder authentication method on the VPN
Gateway, it will not be possible to log in to the VPN without a valid
SMSESSION cookie.
Also see the display command on
<id> Authentication Method Configuration" (page 177)
authorder command on
(page
164).
The default value is false.
Determines the value of the domain cookie when sso (see above) is
set to true.
Example:
Scope = 0: The most specific domain name will be calculated from
the host name. If the Portal's host name is a.b.c.d.e, the domain
cookie's value will be .b.c.d.e.
Scope = 3: If the Portal's host name is a.b.c.d.e, the domain
cookie's value will be .c.d.e.
Scope = 2: If the Portal's host name is a.b.c.d.e, the domain
cookie's value will be .d.e.
The scope must be either 0 or greater than or equal to 2.
Nortel VPN Gateway
Command Reference
NN46120-103 01.01 Standard
10 September 2007
284)) is set to on (default value).
"/cfg/vpn <id> /aaa/auth
"/cfg/vpn <id> /aaa AAA Configuration"
and the

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

3070Nvg 3050Nvg 3070Svm 10001000 con?guration guide

Table of Contents