Page 38
Tadpole M1400 Getting Started Guide
Preparing for Configuration of VPN
Before commencing with any configuration some preparatory work is required. The
following may be needed:
•
Tadpole M1400 thin client notebook typically use DHCP to obtain an IP address and to
get IP addresses off the Sun Ray Auth and Firmware servers. In VPN configurations, the
Sun Ray server information is not likely to be available via DHCP. The server addresses
can be configured in the Servers menu.
•
Is the Tadpole M1400 likely to be behind a NAT? This is not directly configured but some
of the configuration options are affected by this. Specifically, the use of Main Mode and
Identification via IP Address are not supported with a NAT router. Aggressive Mode must
be configured when behind a NAT.
•
Determine which method of identification is to be used--
Key Identifier
or
Address
-- and gather the relevant ID values. (For example, when connecting to a Cisco
VPN concentrator, the
Key Identifier
will be the group to which you wish to connect.)
•
Determine the pre-shared secret relevant to the identifier previously chosen. Currently,
pre-shared secret is the only method of authentication that is supported.
•
Is the user to be separately verified using XAuth?
NOTE:
XAuth is an extension of Mode Config and will be used to further authenticate the user if it is
required by the VPN peer.
•
Is Aggressive mode to be used during Phase 1? If so, the encryption algorithm,
authentication algorithm and PFS (Perfect Forward Secrecy) Group needs to be
determined.
Содержание M1400
Страница 1: ......
Страница 58: ...Page 58 Tadpole M1400 Getting Started Guide Notes...
Страница 67: ...Tadpole M1400 Getting Started Guide Page 67...
Страница 68: ......