Configuring Virtual Private Networks (VPNs) and Security
Configuring Advanced VPN Parameters
Cisco RV220W Administration Guide
116
6
STEP 5
Optionally in the
Extended Authentication
section, enable Extended
Authentication (XAUTH). When connecting many VPN clients to a VPN gateway
router, XAUTH allows authentication of users with methods in addition to the
authentication method mentioned in the IKE SA parameters.
•
XAUTH Type—
Choose one of the following options:
-
None
—Disables XAUTH.
-
Edge Device
—Authentication is done by one of the following methods:
User Database
—User accounts created in the router are used to
authenticate users. After completing this procedure, enter the users on
the
VPN > IPsec > VPN Users
page. See
Configuring VPN Users,
page 122
.
RADIUS-PAP
or
RADIUS-CHAP
—Authentication is done by using a
RADIUS server and either password authentication protocol (PAP) or
challenge handshake authentication protocol (CHAP). After completing
this procedure, set up the RADIUS server on the
Security > RADIUS
Server
page. See
Using the Cisco RV220W With a RADIUS Server,
page 146
.
-
IPsec Host
—The router is authenticated by a remote gateway with a
username and password combination. In this mode, the router acts as a
VPN Client of the remote gateway. If you select this option, also enter the
Username
and
Password
for the host.
STEP 6
Click
Save
to save your settings, or click
Cancel
to reload the page with the
current settings. Click
Back
to return to the
VPN > IPsec > Advanced VPN Setup
page.