Dell SonicWALL Secure Mobile Access 8.5
Administration Guide
193
3 Enter the IP address of the SMA/SRA appliance.
4 In the
Policy ID
field, select your new policy.
5 Fill in the
Shared Secret
you entered for the RADIUS server properties on the SMA/SRA appliance.
6 Click
Create
.
Configuring a VASCO IdentiKey User
To create a new user:
1 In the Vasco Identikey Web Administration window, click the
Users
tab and select
Create
.
2 Fill in the
User ID
field.
3 Select the
Domain
.
4 Select the
Organizational Unit
.
5 Click
Create
.
The user appears in the list of users in the Vasco Identikey Web Administration management interface.
Importing DIGIPASS
To import a DIGIPASS:
1 In the Vasco Identikey Web Administration window, click on the
DIGIPASS
tab and select
Import
.
2 Browse for the
*.DPX
file.
3 Enter the
Transport Key
.
4 Click
UPLOAD
.
A confirmation message pops up when the DIGIPASS is imported successfully.
Assigning a DIGIPASS to a User
There are two ways to assign a DIGIPASS to a user. You can search for a DIGIPASS and assign it to a user or search
for a user and assign the user to a DIGIPASS.
1 Do one of the following:
•
On the
Users
tab, select the check box next to the user and then click
Assign DIGIPASS
.
•
On the
DIGIPASS
tab, select the check box next to the DIGIPASS and then click
NEXT
.
When a user is assigned to a DIGIPASS, a confirmation message pops up.
Verifying Two-Factor Authentication
To test the two-factor authentication SMA/SRA connectivity with VASCO IdentiKey:
1 Connect your PC on the WAN (X1) interface of the SMA/SRA by pointing your browser to its IP address.
2 Log in to the Local Domain as an Administrator.
3 Navigate to
Portal > Domains
and click
Configure
to test the RADIUS connectivity to VASCO IdentiKey.
4 If the RADIUS Authentication is successful, log out of the Administrator account and log in to the WAN
(X1) interface of Secure Mobile Access with the User Name you created.
NOTE:
If the
User ID
is left blank, press
Find
and a list of all the available users in the same domain
appears. If no users appear, make sure the domains of the DIGIPASS and the user match.