Assign Ip Addresses To Remote Users (Mode Config); Mode Config Operation - NETGEAR SRX5308 Reference Manual

Prosafe gigabit quad wan ssl vpn firewall
Hide thumbs Also See for SRX5308:
Table of Contents

Advertisement

Table 42. RADIUS Client screen settings (continued)
Settings
Backup Server IP Address
Secret Phrase
Backup Server NAS
Identifier
Connection Configuration
Time out period
Maximum Retry Counts
3.
Click Apply to save your settings.
Note:
You select the RADIUS authentication protocol (PAP or CHAP) on
the Edit IKE Policy screen or Add IKE Policy screen (see
XAUTH for VPN Clients

Assign IP Addresses to Remote Users (Mode Config)

To simplify the process of connecting remote VPN clients to the VPN firewall, use the Mode
Config feature to assign IP addresses to remote users, including a network access IP
address, subnet mask, WINS server, and DNS address from the VPN firewall. Remote users
are given IP addresses available in a secured network space so that remote users appear as
seamless extensions of the network.

Mode Config Operation

After the IKE Phase 1 negotiation is complete, the VPN connection initiator (which is the
remote user with a VPN client) requests the IP configuration settings such as the IP address,
subnet mask, WINS server, and DNS address from the VPN firewall. The Mode Config
feature allocates an IP address from the configured IP address pool and activates a
temporary IPSec policy, using the information that is specified in the Traffic Tunnel Security
Level section of the Mode Config record (on the Add Mode Config Record screen that is
shown in
Figure 110
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Description
The IP address of the backup RADIUS server.
A shared secret phrase to authenticate the transactions between the client
and the backup RADIUS server. The same secret phrase needs to be
configured on both the client and the server.
The backup NAS identifier that needs to be present in a RADIUS request.
Note:
See the note earlier in this table for the Primary Server NAS Identifier.
The period in seconds that the VPN firewall waits for a response from a
RADIUS server.
The maximum number of times that the VPN firewall attempts to connect to
a RADIUS server.
on page 175).
on page 180).
Virtual Private Networking Using IPSec Connections
178
Configure

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents