Chapter 9 Authentication

Overview

The LSM Authentication menu pages enable Administrators to create and manage user accounts and configure authentication rules. The Authentication menu provides the following options:

User List — create and manage user accounts to provide access to LSM operators and administrators and to provide local users with access to network services through the X family device.

Privilege Groups — setup access rights for VPN clients and network services protected by firewall rules

RADIUS — configure the X family device to use an external RADIUS server for user authentication

X.509 Certificates — create, import and manage the CA Certificates, Certificate Requests, and Local Certificates used for VPN authentication

Preferences — configure session and device timeouts, security level check required for passwords, and account login security

For additional information, see the following topics:

“User List” on page 246

“Managing User Accounts” on page 249

“How Local User Authentication Works: RADIUS, Privilege Groups and X.509 Certificates” on page 251

User List

Overview

The User List menu pages allow you to create and manage user accounts to provide access to LSM operators and administrators and to provide local users with access to network services through the X family device. You can also configure authentication parameters that ensure secure access to the device and network services.

The following topics describe how user accounts and authentication are configured on the X family device:

“TOS and Local User Accounts” on page 247

“TOS User Security Level” on page 247

“Username and Password Requirements” on page 248

“How Local User Authentication Works: RADIUS, Privilege Groups and X.509 Certificates” on page 251

For instructions on using the User List menu options, see the following topics:

“Managing User Accounts” on page 249

“Privilege Groups” on page 253

“X.509 Certificates” on page 255

246 X Family LSM User’s Guide V 2.5.1