NETGEAR ProSafe SSL VPN Concentrator 25 SSL312 Reference Manual

Additional domains may be created that require authentication to remote authentication servers. The SSL VPN Concentrator supports RADIUS (PAP, CHAP, MSCHAP, and MSCHAPV2), LDAP, NT Domain, and Active Directory authentication in addition to internal user database authentication.

All of the configured domains will be listed in the table in the Domains window. The domains are listed in the order in which they were created.

Local User Database Authentication

You may create multiple domains that authenticate users with users and passwords stored on the SSL VPN Concentrator. This is necessary if you wish to display different portal layouts (such as SSL VPN portal pages, themes, etc.) to different users.

To add a new authentication domain:

1.Click Add Domain. An Add Domain window similar to the following will display.

Figure 7-2

2.Select Local User Database from the Authentication Type pull-down menu.

3.Enter a descriptive name for the authentication domain in the Domain Name field. This is the domain name users will select in order to log into the SSL VPN portal.

4.Select the name of the layout in the Portal Layout Name pull-down menu. The default layout is SSL-VPN. Additional layouts may be defined in the Portal Layouts screen.

5.Check the Require client digital certificates radio box to force users to supply a valid digital certificate before granting access. The CNAME of the client certificate must match the user name that the user supplies to log in and the certificate must be generated by a certificate authority (CA) that is trusted by SSL VPN Concentrator.

7-2

Domains and Layouts

v1.0, August 2006

Page 74
Image 74
NETGEAR SSL312 manual Local User Database Authentication