
40
Authentication Method
40.1 Overview
Authentication method objects set how the ZyWALL authenticates HTTP/HTTPS clients, peer IPSec routers (extended authentication), L2TP VPN, and wireless clients. Configure authentication method objects to have the ZyWALL use the local user database, and/or the authentication servers and authentication server groups specified by AAA server objects. By default, user accounts created and stored on the ZyWALL are authenticated locally.
40.1.1What You Can Do Using The Auth. Method Screens
•Use the Object > Auth. Method screen (Section 40.2 on page 636) to view authentication method objects.
•Use the Object > Auth. Method > Add screen (Section 40.3 on page 637) to create a new authentication method object.
Finding Out More
See Section 6.5.3 on page 149 for an example of how to set up user authentication using a radius server.
40.1.2 Before You Begin
Configure AAA server objects (see Chapter 39 on page 625) before you configure authentication method objects.
40.1.3 Example: Selecting a VPN Authentication Method
After you set up an authentication method object in the Auth. Method screens, you can use it in the VPN Gateway screen to authenticate VPN users for establishing a VPN connection. Refer to the chapter on VPN for more information.
Follow the steps below to specify the authentication method for a VPN connection.
1Access the VPN > IPSec VPN > VPN Gateway > Edit screen.
2Select Enable Extended Authentication.
3Select Server Mode and select an authentication method object from the
4Click OK to save the settings.
| 635 |
ZyWALL USG 100/200 Series User’s Guide | |
|
|