150
Field descriptions
VPN field descriptions
Table C-29
Client Users tab field descriptions
Use the Client Users tab to define the remote users that are permitted to access your network through a
VPN tunnel.
Table C-30
Client tunnel tab field descriptions (Continued)
Section
Field
Extended User
Enable Extended User
Authentication
Authentication
RADIUS Group
Binding
WAN Client Policy
Enable Content
Filtering
Use Deny List
Use Allow List
Enable Antivirus Policy
Enforcement
Warn Only
Block Connections
Client Users tab field descriptions
Section
Field
VPN User Identity
User
Enable
User Name
Pre-Shared Key
VPN Group
Description
Requires all users in the selected VPN group use RADIUS for
extended authentication after phase 1, but before phase 2.
If a RADIUS group binding is specified, the remote user must be a
member of that group on the RADIUS Server. The filter ID returned
from RADIUS must match this value to authenticate the user.
When specifying RADIUS group bindings, no two client tunnels may
have the same setting for the group binding.
The maximum length of the value is 25 characters.
Traffic for all clients in the selected VPN group is subject to the
content filtering rules defined in allow and deny lists.
Content filtering uses the deny list, a list of URLs that clients are not
permitted to view, allowing all other traffic.
Content filtering uses the allow list, a list of URLs that clients are
permitted to view, blocking all other traffic. This is the default.
Requires all users in the selected VPN group to have Symantec
antivirus software updated with the most current virus definitions.
A client with non-compliant antivirus software or virus definitions is
still allowed access. A log message warns the administrator that the
client is non-compliant.
A client with non-compliant antivirus software or virus definitions is
denied access to the external network. The client is allowed access to
the Symantec Antivirus CE Server or LiveUpdate server to bring
their virus definitions into compliance.
Description
Select a user to update or delete.
Enables a VPN tunnel for the specified user.
To temporarily suspend a user, uncheck Enable, and then click
Update. To permanently remove a user, click Delete.
User name for the client user.
The maximum number of alphanumeric characters for this value is
31. It must match the remote Client ID in Symantec Client VPN
software.
You can add up to 50 client users.
ISAKMP (IKE) authenticating key. The key is unique to this user.
You must enter a pre-shared key. The maximum number of
alphanumeric characters for this value is 64. The pre-shared key
must match the pre-shared key offered by the remote VPN client.
Defines the VPN Group (tunnel definition) for this user.
Need help?
Do you have a question about the 460R - Gateway Security and is the answer not in the manual?