Authentication servers – Panasonic NN46110-600 User Manual
Page 28
Attention! The text in this document has been recognized automatically. To view the original document, you can use the "Original mode".
18 Chapter 1 Authentication services
Certificate payload transports certificates or other certificate-related information
through ISAKMP and can appear in any ISAKMP message. Certificate payloads
are included in an exchange whenever an appropriate directory service (such as
Secure DNS) is not available to distribute certificates. The VPN Router supports
Microsoft native client (L2TP/IPsec) PKCS #7 termination in chained
environments.
Using certificates for tunnel connections requires the creation of a public key
infrastructure (PKI) to issue and manage certificates for remote users and VPN
Router servers.
Authentication servers
The VPN Router supports LDAP and RADIUS authentication servers. The VPN
Router always attempts to authenticate a remote user against the internal or
external LDAP profiles.
Note:
If you authenticate using RADIUS or LDAP authentication, you
must use unique names for the Group ID and User ID.
Figure 2 shows a VPN Router and authentication servers.
NN46110-600