Chapter 10: Creating Aliases and Implementing Authentication
Although WatchGuard supports both CHAP and PAP
authentication, CHAP is considered more secure.
From Policy Manager:
1
Select Setup => Authentication Servers.
The Authentication Servers dialog box appears.
2
Click the RADIUS Server tab.
The RADIUS information appears, as shown in the following
figure.
3
Enter the IP address of the RADIUS server.
4
Enter or verify the port number used for RADIUS
authentication.
The default is 1645. RFC 2138 states the port number as 1812,
but many RADIUS servers still use port number 1645.
5
Enter the value of the secret shared between the
Firebox and the RADIUS server.
The shared secret is case-sensitive and must be identical on the
Firebox and the RADIUS server.
6
Enter the IP address and port of the backup RADIUS
server. The RADIUS servers' secret must be shared
between both the primary and backup servers.
7
Click OK.
8
Gather the IP address of the Firebox and the user or
group aliases you want to authenticate using RADIUS.
The aliases appear in the From and To listboxes for the
individual services.
172
WatchGuard Firebox System
Need help?
Do you have a question about the Firebox X1000 and is the answer not in the manual?