NETGEAR ProSafe SSL VPN Concentrator 25 SSL312 Reference Manual
Additional domains may be created that require authentication to remote authentication servers.
The SSL VPN Concentrator supports RADIUS (PAP, CHAP, MSCHAP, and MSCHAPV2),
LDAP, NT Domain, and Active Directory authentication in addition to internal user database
authentication.
All of the configured domains will be listed in the table in the Domains window. The domains are
listed in the order in which they were created.
Local User Database Authentication
You may create multiple domains that authenticate users with users and passwords stored on the
SSL VPN Concentrator. This is necessary if you wish to display different portal layouts (such as
SSL VPN portal pages, themes, etc.) to different users.
To add a new authentication domain:
1. Click Add Domain. An Add Domain window similar to the following will display.
Figure 7-2
2. Select Local User Database from the Authentication Type pull-down menu.
3. Enter a descriptive name for the authentication domain in the Domain Name field. This is the
domain name users will select in order to log into the SSL VPN portal.
4. Select the name of the layout in the Portal Layout Name pull-down menu. The default layout
is SSL-VPN. Additional layouts may be defined in the Portal Layouts screen.
5. Check the Require client digital certificates radio box to force users to supply a valid digital
certificate before granting access. The CNAME of the client certificate must match the user
name that the user supplies to log in and the certificate must be generated by a certificate
authority (CA) that is trusted by SSL VPN Concentrator.
7-2
v1.0, August 2006
Domains and Layouts