User's Manual

Table Of Contents
VPN Mode Configuration Commands
185
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Extended authentication settings
extended_authentication None, IPSecHost, or
EdgeDevice
Specifies whether or not Extended
Authentication (XAUTH) is enabled, and,
if enabled, which device is used to verify
user account information:
None. XAUTH is disabled. This the
default setting.
IPSecHost. The wireless VPN firewall
functions as a VPN client of the remote
gateway. In this configuration the
wireless VPN firewall is authenticated
by a remote gateway. You need to issue
the xauth_username and
xauth_password keywords and
specify the associated parameters.
EdgeDevice. The wireless VPN firewall
functions as a VPN concentrator on
which one or more gateway tunnels
terminate. You need to issue the
extended_authentication_type
keyword and select an associated
keyword.
extended_authentication_type
User-Database,
RadiusPap, or RadiusChap
If the extended_authentication
keyword is set to EdgeDevice, specifies
the authentication type:
User-Database. XAUTH occurs through
the wireless VPN firewall’s user
database.
RadiusPap. XAUTH occurs through
RADIUS Password Authentication
Protocol (PAP).
RadiusChap. XAUTH occurs through
RADIUS Challenge Handshake
Authentication Protocol (CHAP).
Note: For information about how to
configure a RADIUS server for
authentication of VPN connections, see
RADIUS Server Command.
xauth_username user name If the extended_authentication
keyword is set to IPSecHost, specifies a
user name.
xauth_password password If the extended_authentication
keyword is set to IPSecHost, specifies a
password.
Keyword Associated Keyword to
Select or Parameter to Type
Description