Appendix B Site-to-Site VPN User Interface Reference

Site to Site VPN Policies

Table B-23

Easy VPN IPSec Proposal Page (continued)

 

 

 

Element

 

Description

 

 

Group Policy Lookup/AAA

Supported on Cisco IOS routers only.

Authorization Method

The AAA authorization method list that will be used to define the

 

 

 

 

order in which the group policies are searched. Group policies can

 

 

be configured on both the local server or on an external AAA server.

 

 

You can click Select to open a dialog box that lists all available

 

 

AAA group servers, and in which you can create AAA group server

 

 

objects. For more information, see Working with AAA Server

 

 

Group Objects, page 8-6.

 

 

User Authentication

Supported on Cisco IOS routers only.

(Xauth)/AAA Authentication

The AAA or Xauth user authentication method used to define the

Method

 

 

order in which user accounts are searched.

 

 

 

 

Xauth allows all Cisco IOS software AAA authentication methods

 

 

to perform user authentication in a separate phase after the IKE

 

 

authentication phase 1 exchange. The AAA configuration list-name

 

 

must match the Xauth configuration list-name for user

 

 

authentication to occur.

 

 

For more information about defining user accounts, see Defining

 

 

Device Access Policies, page 12-26.

 

 

You can click Select to open a dialog box that lists all available

 

 

AAA group servers from which you can make your selection, and in

 

 

which you can create additional AAA group server objects. For

 

 

more information, see Working with AAA Server Group Objects,

 

 

page 8-6.

 

 

 

Save button

 

Saves your changes to the server but keeps them private.

 

 

Note To publish your changes, click the Submit button on the

 

 

toolbar.

 

 

 

Close button

 

Closes the Site-to-Site VPN window.

 

 

 

Help button

 

Opens help for this page.

 

 

 

 

User Guide for Cisco Security Manager 3.0.1

B-72

OL-8214-02

Page 72
Image 72
3D Innovations 3.0.1 appendix Device Access Policies, More information, see Working with AAA Server Group Objects