Chapter 4 Remote Access VPN Services

Creating Remote Access VPN Policies

Figure 4-19 The Remote Access VPN Policy – VPN 3000 Editor Page

 

Step 2

Follow the instructions in Table 4-8to enter VPN 3000-specific parameters.

 

 

Table 4-8 VPN 300 Editor Fields

 

 

 

 

 

 

 

Field Name

 

Type

Instructions

 

 

 

 

 

 

 

Simultaneous

 

text box

Enter the number of simultaneous logins for this group.

 

Logins

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Min Password

 

text box

Enter the minimum password length for users in this group.

 

Length

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Allow Alphabetic

 

checkbox

Enter whether to allow users with alphabetic-only passwords to be added to this

 

Only Passwords

 

 

group.

 

 

 

 

 

 

 

Strip Realm

 

checkbox

Check the Strip Realm checkbox to remove the realm qualifier of the user name

 

 

 

 

during authentication. When enabled, authentication is based on the username alone.

 

 

 

 

Otherwise, authentication is based on the full username@realm string. You must

 

 

 

 

enable this option if your server is unable to parse delimiters.

 

 

 

 

 

 

 

Idle Timeout

 

text box

Enter the idle timeout in minutes for this group.

 

 

 

 

 

 

 

Max Connect Time

 

text box

Enter the maximum connection time in minutes for this group.

 

 

 

 

 

 

 

IKE Peer Identity

 

drop-down

Select whether or not to validate the identity of the peer using the peer device

 

 

 

list

certificate.

 

 

 

 

 

 

 

IKE Keepalives

 

checkbox

Check to enable the use of IKE keepalives for members of this group.

 

 

 

 

 

 

 

Authentication on

 

checkbox

Check to re-authenticate the user on an IKE (Phase-1) rekey.

 

Rekey

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Cisco IP Solution Center Integrated VPN Management Suite Security User Guide, 3.2

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

OL-5532-02

 

 

 

 

4-19

 

 

 

 

 

 

 

 

Page 19
Image 19
Cisco Systems OL-5532-02 Simultaneous, Logins Min Password, Length Allow Alphabetic, Only Passwords, Strip Realm, Rekey