Specifications
3-11
VPN 3000 Series Concentrator Getting Started
78-15733-03
Chapter 3 Using the VPN Concentrator Manager for Quick Configuration
Configuring Authentication
Step 1 Check Client Specified to enable this method, which lets the client specify its own IP address. If you
use IPSec, you must check additional boxes, since IPSec does not allow client-specified IP addresses.
Step 2 Check Per User to enable this method, which assigns IP addresses on a per-user basis. If you use an
authentication server that has IP addresses configured, we recommend using this method. You configure
an authentication server on the next screen.
Step 3 Check DHCP (Dynamic Host Configuration Protocol) to enable this method, which uses a DHCP server
to assign IP addresses.
Step 4 If you enable DHCP, enter the DHCP server hostname or IP address in the Specify Server field. (If you
configured a DNS server, you can enter a hostname in this field; otherwise, enter an IP address.)
Step 5 Check Configured Pool to enable this method, which uses the VPN Concentrator to assign IP addresses
from an internally configured pool.
Step 6 If you enable Configured Pool, enter the starting and ending IP addresses available in the initial pool, in
the Range Start and Range End fields. Enter these addresses in dotted decimal notation; for example,
10.10.147.77.
Step 7 Click Continue to proceed.
When you configure the VPN Concentrator to service IPSec or L2TP VPN clients, you must configure
the users, users' Group, or Base Group to allocate client VPN (private side) addresses. VPN clients (as
opposed to Clientless access) require that the VPN Concentrator provide private-side IP addresses which
the clients then use to configure their virtual network adaptors.
You can configure these settings in the regular VPN Concentrator Manager on the following screens:
• Configuration | System | Address Management — Set up a source of client addresses for Base
Group configuration and inherited groups.
• Configuration | User Management | Groups | Address Pools — Set up address pools for specific
user groups.
• Configuration | User Management | Users | Modify — Configure specific addresses for particular
users.
Configuring Authentication
The Manager displays the Configuration | Quick | Authentication screen. This screen appears only when
you enable at least one tunneling protocol.
Figure 3-8 Configuration | Quick | Authentication Screen, Internal Server