Configuring remote access users
106 Avaya VPNmanager Configuration Guide Release 3.7
Using dyna-policy
The VPNremote client uses a Dyna-Policy when communicating with a VPN. The dyna-policy
tells the VPNremote client which authentication and dyna-policy must be used and the topology
of the VPN.
A dyna-policy can be configured for either globally for all users on the domain or for individual
users.
The global dyna-policy is configured from the VPNmanager Preferences property and is
automatically distributed to the VPNremote Client. The automatic distribution method is called
Client Configuration Download (CCD). The security gateways distributes the Dyna-Policy when
VPNremote Client connects to the VPN.
An individual dyna-policy is configured from the user object, dyna-policy tab and is manually
distributed to the VPNremote Client. The manual distribution method involves a three step
process.
From within a specific User object, you create a dyna-policy file.
The file is then delivered, for example, by e-mail, to the user of the VPNremote Client.
Although the file can be password protected, the file is encrypted using DES (Data
Encryption Standard).
The user then runs VPNremote Client to install the dyna-policy file.
The RSA SecurID New PIN and Next Token CCD modes are supported.
Figure 32: User Dyna-Policy tab