ProSecure Unified Threat Management (UTM) Appliance Reference Manual

Note that Figure 8-3contains some examples. Enter the settings as explained in Table 8-2, then click Next to go the following screen.

Note: If you leave the Domain Name field blank, the SSL VPN Wizard uses the default domain name geardomain. You must enter a name other than geardomain in the Domain Name field so the SSL VPN Wizard can create a new domain. Do not enter an existing domain name in the in the Domain Name field, otherwise the SSL VPN Wizard will fail and the UTM will reboot to recover its configuration.

Note: After you have completed the steps in the SSL VPN Wizard, you can make changes to the domain settings by selecting Users > Domains. For more information about domain settings, see “Configuring Domains” on page 9-2.

Table 8-2. SSL VPN Wizard Step 2: Domain Settings

Setting

Description (or Subfield and Description)

 

 

DOMAIN NAME

A descriptive (alphanumeric) name of the domain for identification and management

 

purposes.

 

 

Authentication Type

From the pull-down menu, select the authentication method that the UTM applies:

 

Local User Database (default). Users are authenticated locally on the UTM. This

 

is the default setting. You do not need to complete any other fields on this screen.

Note: If you select

Radius-PAP. RADIUS Password Authentication Protocol (PAP). Complete the

Authentication Server and Authentication Secret fields.

any type of RADIUS

Radius-CHAP. RADIUS Challenge Handshake Authentication Protocol (CHAP).

authentication, make

Complete the Authentication Server and Authentication Secret fields.

sure that one or more

Radius-MSCHAP. RADIUS Microsoft CHAP. Complete the Authentication Server

RADIUS servers are

and Authentication Secret fields.

configured (see

Radius-MSCHAPv2. RADIUS Microsoft CHAP version 2. Complete the

“RADIUS Client

Authentication Server and Authentication Secret fields.

Configuration” on

WIKID-PAP. WIKID Systems PAP. Complete the Authentication Server and

page 7-40).

Authentication Secret fields.

Authentication Type

WIKID-CHAP. WIKID Systems CHAP. Complete the Authentication Server and

(continued)

Authentication Secret fields.

 

MIAS-PAP. Microsoft Internet Authentication Service (MIAS) PAP. Complete the

 

Authentication Server and Authentication Secret fields.

 

MIAS-CHAP. Microsoft Internet Authentication Service (MIAS) CHAP. Complete

 

the Authentication Server and Authentication Secret fields.

 

NT Domain. Microsoft Windows NT Domain. Complete the Authentication Server

 

and Workgroup fields.

 

Active Directory. Microsoft Active Directory. Complete the Authentication Server

 

and Active Directory Domain fields.

 

LDAP. Lightweight Directory Access Protocol (LDAP). Complete the

 

Authentication Server and LDAP Base DN fields.

 

 

 

 

8-6

Virtual Private Networking Using SSL Connections

v1.0, January 2010

Page 278
Image 278
NETGEAR UTM50-100NAS, UTM5-100NAS manual SSL VPN Wizard Domain Settings, Domain Name, Radius Client