The VPN 3002 software supports the following features:
Interactive
Hardware Client Authentication
Interactive hardware client
authentication, sometimes called interactive unit authentication, prevents VPN 3002 private LAN users from
accessing the central site until the VPN 3002 unit authenticates. In this
scenario, the VPN 3002 doesn’t use a saved user name and password for
authentication. Instead, a valid user name and a password for the 3002 must be
manually entered each time.
The VPN 3002 sends the user name and the password to the VPN
Concentrator when it initiates a tunnel session. The VPN Concentrator can
authenticate the connection using either an internal or an external server. The
tunnel is only established if the user name/password combination is valid.
Interactive hardware client authentication is configured on the
VPN Concentrator, which then pushes the policy down to the VPN 3002 at the next
connection.
Configuring
Interactive Unit Authentication
The Hardware Client parameters tab on the VPN 3000
Concentrator Series Manager is used to configure several features for the VPN
3002 and its users in the base group. The feature will be “pushed” down to the
client devices the next time the VPN 3002 establishes a session. The menu
selection is Configuration | User Management | Base Group, HW Client parameters
tab.