
A-309
Chapter 15 Using RA 6300 Security
Remote Annex 6300 Supplement to the Remote Annex Administrator’s Guide for UNIX
Book A
Configuring the RA 6300 for Use with SecurID
To use the SecurID card, security must be enabled on the RA 6300:
1.
Set the following RA 6300 parameters to Y:
•
enable_security
•
vcli_security
2.
Set the following RA 6300 port parameters to Y on the global
port:
•
cli_security
•
port_server_security
3.
Set the RA 6300 port parameter ppp_security_protocol to none on
each port.
If ppp_security_protocol is set to none, the user will be prompted
again for user name and passcode when trying to use the CLI ppp
command. The user must enter the PIN and SecurID card code for
the passcode.
If you do not want to be prompted a second time, set ppp_sec_auto
to Y.
4.
Set the RA 6300 parameters password and vcli_password and the
port parameter port_password to the null string ("") if you want
the ACE/Server system to authenticate all login attempts before
allowing access to the RA 6300. Also, do not set a port
password in the acp_passwd file when using SecurID.
5.
Enter a host name or IP address for the pref_secure1_host and
pref_secure2_host parameters for each RA 6300 using a SecurID
card. The host addresses where each ACP process runs must
be activated in the ACE/Server database as clients.
Summary of Contents for 6300
Page 4: ...Remote Annex 6300 Supplement to the Remote Annex Administrator s Guide for UNIX iv ...
Page 20: ...Remote Annex 6300 Supplement to the Remote Annex Administrator s Guide for UNIX Figures xx ...
Page 24: ...Remote Annex 6300 Supplement to the Remote Annex Administrator s Guide for UNIX Tables xxiv ...