Firewall-1

Re: [FW-1] Radius Authentication

Subject: Re: [FW-1] Radius Authentication
From: Mark Elsen <mark.elsen AT GMAIL DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Thu, 20 Apr 2006 17:43:09 +0200
> Afternoon all, I just wanted to confirm a setup for authenticating
> SecureClient Users by a Radius server.
>
>
>    - Created Host Object where the Radius Server resides
>    - Created Server Object using Radius as the authentication method and
>    set the hostname as per the previous step
>    - Created an External User Profile (generic*) which matches all users,
>    and has Radius as the authentication method
>    - Created a user group, called VPNUsers (which matches the Radius
>    class attribute on the Radius Server) with generic* as the sole user
>    - Have used Office Mode etc
>    - Created a rule on the rulebase which says VPNUsers@Any - Any
>    Destination - Any Service - Client Encrypt
>
> Have I missed anything ?
>
>

 - You need to define a shared secret on your Radius-server-object, which
must be the same as the targeted Radius server will be using for
radius authentication.

M.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>