40

Authentication Method

40.1 Overview

Authentication method objects set how the ZyWALL authenticates HTTP/HTTPS clients, peer IPSec routers (extended authentication), L2TP VPN, and wireless clients. Configure authentication method objects to have the ZyWALL use the local user database, and/or the authentication servers and authentication server groups specified by AAA server objects. By default, user accounts created and stored on the ZyWALL are authenticated locally.

40.1.1What You Can Do Using The Auth. Method Screens

Use the Object > Auth. Method screen (Section 40.2 on page 636) to view authentication method objects.

Use the Object > Auth. Method > Add screen (Section 40.3 on page 637) to create a new authentication method object.

Finding Out More

See Section 6.5.3 on page 149 for an example of how to set up user authentication using a radius server.

40.1.2 Before You Begin

Configure AAA server objects (see Chapter 39 on page 625) before you configure authentication method objects.

40.1.3 Example: Selecting a VPN Authentication Method

After you set up an authentication method object in the Auth. Method screens, you can use it in the VPN Gateway screen to authenticate VPN users for establishing a VPN connection. Refer to the chapter on VPN for more information.

Follow the steps below to specify the authentication method for a VPN connection.

1Access the VPN > IPSec VPN > VPN Gateway > Edit screen.

2Select Enable Extended Authentication.

3Select Server Mode and select an authentication method object from the drop-down list box.

4Click OK to save the settings.

 

635

ZyWALL USG 100/200 Series User’s Guide