User Guide
Secure Remote Access Points 21
Chapter 2
If you use the switch local database, navigate to the
AAA Servers > Internal DB
page and click Add User.
Add the username and password. If the default VPN role is not the role remote
ap role, then set the role on this page to the remote ap role. Click
Apply to
apply the changes made.
From the CLI enter:
To specify the role explicitly:
(Alcatel6000) #local-userdb add username remoteap1 password remote role remote-ap
(Alcatel6000)
By default, no authentication server is defined under VPN authentication.
When using VPN authentication, make sure an authentication server is
configured. For example, after adding the username/password in the
appropriate user database, if the user is to use the Internal Server for VPN
authentication, enable this configuration using the following commands:
(Alcatel6000) #configure terminal
(Alcatel6000) (config) #aaa vpn-authentication auth-server Internal
(Alcatel6000) (config) #
CAUTION—For security purposes, Alcatel recommends that you use a
unique username/password for each remote AP. You should assign a
unique username and password to each AP.










