3-7
PIX 515E Security Appliance Getting Started Guide
78-17645-01
Chapter 3 Scenario: IPsec Remote-Access VPN Configuration
Implementing the IPsec Remote-Access VPN Scenario
Specifying the VPN Tunnel Group Name and Authentication
Method
In Step 3 of the VPN Wizard, perform the following steps:
Step 1
Specify the type of authentication that you want to use by performing one of the
following steps:
•
To use a static preshared key for authentication, click the
Pre-Shared Key
radio button and enter a preshared key (for example, “Cisco”). This key is
used for IPsec negotiations between the security appliances.
•
To use digital certificates for authentication, click the
Certificate
radio
button, choose the Certificate Signing Algorithm from the drop-down list,
and then choose a preconfigured trustpoint name from the drop-down list.
If you want to use digital certificates for authentication but have not yet
configured a trustpoint name, you can continue with the Wizard by using one
of the other two options. You can revise the authentication configuration later
using the standard ASDM screens.
•
Click the
Challenge/Response Authentication (CRACK)
radio button to
use that method of authentication.