Chapter 1, Authentication services, Chapter 1 authentication services – Panasonic NN46110-600 User Manual

Page 25

Attention! The text in this document has been recognized automatically. To view the original document, you can use the "Original mode".

background image

15

Chapter 1

Authentication services

The remote user attempting to dial in to the VPN Router must be authenticated

before gaining access to the corporate network. Authentication is one of the most
important functions that the VPN Router provides because it identifies users and

drives many other aspects of the user-centric functionality.

For authentication and access control, the VPN Router supports an internal or

external Lightweight Directory Access Protocol (LDAP) server and external

Remote Authentication Dial-In User Services (RADIUS) servers. External LDAP
proxy server support allows authentication of users against existing LDAP

databases.

Figure 1 shows how users are authenticated.

Figure 1

Authenticating users

The VPN Router uses a group profile mechanism to augment support for several

authentication services. When a remote user attempts to access the network, the

VPN Router references a particular group profile to determine encryption

strength, filtering profile, and quality of service attributes for that user.

Nortel VPN Router Security — Servers, Authentication, and Certificates