and gateway, you can override this setting to include only the Reseller external
user group.
•
In the Security tab, enter the preshared key value (netscreen4), then click
Generate
Key
.
•
For Phase 1 Proposals, select User-Defined, then click the Add/Edit icon to add
the pre-g2-3des-sha proposal.
•
Click
OK
to save your changes to the gateway.
•
Click
Save
to save your configuration changes to the VPN and autogenerate the
policy rules.
To view the autogenerated rules, click the
Policy Rules
link in the Overrides section.
VPN Manager generates the rules.
7.
Configure Overrides. By default, the gateway attempts to authenticate all users using
the specified authentication server (radius1). You must override the gateway security
settings to enable the VPN to authenticate only the Reseller external user group:
•
In the overrides area, click the
Device Configuration
link.
•
In the navigation tree, double-click
Bozeman
and select
Gateway
. The
autogenerated gateway for the Bozeman appears in the main display area.
•
Right-click the autogenerated gateway and select
Edit
. The Properties tab appears.
•
In the IKE IDs/XAuth tab, configure the XAuth area to authenticate only the Reseller
external group.
•
For user, select
User Group
.
•
For User Group, select
xa-grp2
.
•
Click
OK
to save your overrides.
8.
Add the VPN Link. You can create a VPN link between the security policy and the
VPN Manager autogenerated rules. You create this link by inserting a VPN link in the
security policy; this links points to the VPN rules that exist in the VPN Manager.
•
In Security Policies, select an existing security policy (or create a new security
policy). Right-click and select
Add VPN
link.
•
Select the
Reseller Remote Access VPN
.
•
Click
OK
to add the link to the policy.
By default, the link appears at the top of the policy, but you can move the VPN link
anywhere in the policy, just as you would a firewall rule.
Creating Device-Level VPNs
You can create four types of device-level VPNs:
Copyright © 2010, Juniper Networks, Inc.
592
Network and Security Manager Administration Guide
Содержание NETWORK AND SECURITY MANAGER 2010.3
Страница 6: ...Copyright 2010 Juniper Networks Inc vi...
Страница 36: ...Copyright 2010 Juniper Networks Inc xxxvi Network and Security Manager Administration Guide...
Страница 52: ...Copyright 2010 Juniper Networks Inc 2 Network and Security Manager Administration Guide...
Страница 90: ...Copyright 2010 Juniper Networks Inc 40 Network and Security Manager Administration Guide...
Страница 144: ...Copyright 2010 Juniper Networks Inc 94 Network and Security Manager Administration Guide...
Страница 146: ...Copyright 2010 Juniper Networks Inc 96 Network and Security Manager Administration Guide...
Страница 234: ...Copyright 2010 Juniper Networks Inc 184 Network and Security Manager Administration Guide...
Страница 310: ...Copyright 2010 Juniper Networks Inc 260 Network and Security Manager Administration Guide...
Страница 364: ...Copyright 2010 Juniper Networks Inc 314 Network and Security Manager Administration Guide...
Страница 366: ...Copyright 2010 Juniper Networks Inc 316 Network and Security Manager Administration Guide...
Страница 478: ...Copyright 2010 Juniper Networks Inc 428 Network and Security Manager Administration Guide...
Страница 576: ...Copyright 2010 Juniper Networks Inc 526 Network and Security Manager Administration Guide...
Страница 580: ...Copyright 2010 Juniper Networks Inc 530 Network and Security Manager Administration Guide...
Страница 592: ...Copyright 2010 Juniper Networks Inc 542 Network and Security Manager Administration Guide...
Страница 684: ...Copyright 2010 Juniper Networks Inc 634 Network and Security Manager Administration Guide...
Страница 690: ...Copyright 2010 Juniper Networks Inc 640 Network and Security Manager Administration Guide...
Страница 696: ...Copyright 2010 Juniper Networks Inc 646 Network and Security Manager Administration Guide...
Страница 698: ...Copyright 2010 Juniper Networks Inc 648 Network and Security Manager Administration Guide...
Страница 748: ...Copyright 2010 Juniper Networks Inc 698 Network and Security Manager Administration Guide...
Страница 778: ...Copyright 2010 Juniper Networks Inc 728 Network and Security Manager Administration Guide...
Страница 870: ...Copyright 2010 Juniper Networks Inc 820 Network and Security Manager Administration Guide...
Страница 872: ...Copyright 2010 Juniper Networks Inc 822 Network and Security Manager Administration Guide...
Страница 898: ...Copyright 2010 Juniper Networks Inc 848 Network and Security Manager Administration Guide...
Страница 908: ...Copyright 2010 Juniper Networks Inc 858 Network and Security Manager Administration Guide...
Страница 910: ...Copyright 2010 Juniper Networks Inc 860 Network and Security Manager Administration Guide...
Страница 995: ...PART 6 Index Index on page 947 945 Copyright 2010 Juniper Networks Inc...
Страница 996: ...Copyright 2010 Juniper Networks Inc 946 Network and Security Manager Administration Guide...