Wvpn Authentication; Simple Authentication; Radius Authentication - Symbol WS5000 Series System Reference Manual

Hide thumbs Also See for WS5000 Series:
Table of Contents

Advertisement

12-6
WS5000 Series Switch System Reference

12.2.4 WVPN Authentication

A request for authentication made by a VPN client on the untrusted network can be forwarded to a VPN server
which proxies to the RADIUS server (internal or external). The trusted RADIUS server authenticates the client
and allows VPN client access from the untrusted network to the trusted network.
Note VPN server supports both, internal and external, RADIUS server authentication.
The RADIUS server database can be either Local or LDAP.

12.2.4.1 Simple Authentication

To configure simple authentication (non-RADIUS), set the simple username, password and domain by using the
following CLI command:
WS5100_VPN>conf wvpn auth simple
WS5000(Cfg) .wvpn.auth.simpleAuth>set simpleUser userName
WS5000(Cfg) .wvpn.auth.simpleAuth>set simplePassword ******
WS5000(Cfg) .wvpn.auth.simpleAuth>set simpleDomain domainName
Table 12.1
lists and describes the CLI commands used to configure simple authentication server settings:
Table 12.1 Simple Authentication Settings
To
Show Authentication Server
settings. (This command will show
all the Authentication Server
related configurable parameters)
Configure simpleAuthUserName
Configure simpleAuthPassword
Configure simpleAuthDomain

12.2.4.2 RADIUS Authentication

A request for authentication made by a VPN client on the untrusted network can be forwarded to a VPN server
which proxies to the RADIUS server. The RADIUS server authenticates the client and allows VPN client access
from the untrusted network to the trusted network. RADIUS Proxy can be enabled by typing enable at the CLI
command prompt as shown below.
WS5000.(Cfg).wvpn.auth.wvpnradius> enable
Enabling...
Status : Success.
RADIUS authentication status :Enable
The primary and secondary RADIUS servers can be set using either of the following commands in CLI.
WS5000.(CFG).wvpn.auth.wvpnradius>set ?
set <primary/secondary>
or
Use the CLI Command
WS5000>show WVPN AUTH
WS5000(Cfg) .wvpn.auth.simpleAuth>set simpleUser
userName
WS5000(Cfg) .wvpn.auth.simpleAuth>set
simplePassword ******
WS5000(Cfg) .wvpn.auth.simpleAuth>set simpleDomain
domainName
host
<name/IP> [port]
[timeout]
[retry]
[userpwd]

Advertisement

Table of Contents
loading

Table of Contents