Appendix B Site-to-Site VPN User Interface Reference

Site to Site VPN Policies

Table B-25 Easy VPN Server > Tunnel Group Policy (PIX 7.0/ASA) Page > General Tab

Element

Description

 

 

Accounting Server Group

The name of the accounting server group (LOCAL if the tunnel

 

group is configured on the local device).

 

You can click Select to open a dialog box that lists all available

 

AAA server groups, and in which you can create AAA server group

 

objects. For more information, see Working with AAA Server

 

Group Objects, page 8-6.

 

 

Strip Realm from Username

When selected, removes the realm from the username before

 

passing the username on to the AAA server. A realm is an

 

administrative domain. Enabling this option allows the

 

authentication to be based on the username alone.

 

You must select this check box if your server cannot parse

 

delimiters.

 

 

Strip Group from Username

When selected, removes the group name from the username before

 

passing the username on to the AAA server. Enabling this option

 

allows the authentication to be based on the username alone.

 

You must select this check box if your server cannot parse

 

delimiters.

 

 

Client Address Assignment

 

DHCP Server

The DHCP servers to be used for client address assignments. The server uses the DHCP servers in the order listed. You can add up to 10 servers.

A default DHCP server is displayed. DHCP servers are predefined network objects. If you want to use a different DHCP server, or select additional DHCP servers, click Select to open the Network/Hosts selector that lists all available network hosts, and in which you can create network host objects.

For more information about network objects, see Working with Network/Host Objects, page 8-142.

 

 

User Guide for Cisco Security Manager 3.0.1

 

 

 

 

 

 

OL-8214-02

 

 

B-77

 

 

 

Page 77
Image 77
3D Innovations 3.0.1 appendix Client Address Assignment