Specifications

4-8
VPN 3000 Series Concentrator Getting Started
78-15733-03
Chapter 4 Using the Command-Line Interface for Quick Configuration
Configuring Authentication
At the cursor, enter 1 to enable configured pool assignment, or press Enter to accept the default (2),
disabled. If you enable configured pool, continue with the next two steps; otherwise, skip them.
Step 6 If you enable configured pool address assignment, the system prompts for the starting IP address
available in the initial pool.
> Configured Pool Range Start Address
Quick -> _
At the cursor, enter the starting IP address available in the initial configured pool. Use dotted decimal
notation; for example, 10.10.1.77.
Step 7 If you enable configured pool address assignment, the system prompts for the ending IP address
available in the initial pool.
> Configured Pool Range End Address
Quick -> [ 0.0.0.0 ] _
At the cursor, enter the ending IP address available in the initial configured pool. Use dotted decimal
notation; for example, 10.10.1.177.
Configuring Authentication
You can choose and configure one of five types of servers to authenticate users:
The internal VPN Concentrator authentication server
An external RADIUS (Remote Authentication Dial-In User Service) server
An external NT (Windows NT) Domain server
An external SDI (RSA Security Inc. SecurID) server
An external Kerberos/Active Directory server
You must select one authentication server type; there is no default. You can configure additional
authentication servers on regular Configuration menus.
Before you configure an external server here, be sure that the external server you reference is itself
properly configured and that you know how to access it (IP address or hostname, TCP/UDP port,
secret/password, and so forth.). The VPN Concentrator functions as the client of these servers.
The system prompts you to select an authentication server type.
-- : Specify how to authenticate users.
1) Internal
2) RADIUS
3) NT Domain
4) SDI
5) Kerberos/Active Directory
6) Continue
Quick -> _
Step 1 At the cursor, enter the menu number for your selection; for example, 1, and skip to the step in the
following section that describes your authentication server selection.