Page 2 - Solution Summary; Partner Integration Overview
Solution Summary Partner Integration Overview Authentication Methods Supported RADIUS List Library Version Used N/A RSA Authentication Manager Name Locking No RSA Authentication Manager Replica Support No Secondary RADIUS Server Support Yes (3) Location of Node Secret on Agent ‘None stored’ RSA Auth...
Page 3 - Product Requirements; Partner Product Requirements: Nortel VPN Router; Partner Product Requirements: Nortel VPN Client
Product Requirements Partner Product Requirements: Nortel VPN Router Firmware Version V05_05.202 Partner Product Requirements: Nortel VPN Client Operating System Required Patches Windows XP Windows 2000 Windows 98 Windows ME Note: Nortel VPN Client Version 4.86 is the last release that provides supp...
Page 4 - Agent Host Configuration
Agent Host Configuration To facilitate communication between the Nortel VPN Router and the RSA Authentication Manager / RSA SecurID Appliance, an Agent Host record must be added to the RSA Authentication Manager database. The Agent Host record identifies the Nortel VPN Router within its database and...
Page 5 - Partner Authentication Agent Configuration; Before You Begin; Enabling Support for RSA SecurID Authentication
Partner Authentication Agent Configuration Before You Begin This section provides instructions for integrating the Nortel VPN Router with RSA SecurID Authentication. This document is not intended to suggest optimum installations or configurations. It is assumed that the reader has both working knowl...
Page 6 - RADIUS Group Configuration
4. In the ‘RADIUS Servers’ section, fill out the info required. The Secret information for these servers should match the encryption key assigned in the Agent Host configuration. RADIUS Group Configuration Any user seeking RADIUS authentication must belong to a group specified by a group ID and pass...
Page 7 - IPSec Client configuration; Connection Wizard
IPSec Client configuration Upon first run of the Contivity VPN Client, you will be prompted to create a connection profile via the Connection Wizard. Use the screenshots below as a guide to setting up your connection for RSA SecurID authentication. For a detailed explanation of each configuration pa...
Page 9 - Certification Checklist
Certification Checklist Date Tested: September 30, 2005 Certification Environment Product Name Version Information Operating System RSA Authentication Manager 6.1 Windows 2003 Server (SP1) RSA Software Token 3.0.5 Windows XP Professional (SP2) RSA Authentication Utility 1.0 Build 25 Windows XP Profe...
Page 10 - Known Issues; RSA Software Token; New Pin mode
Known Issues RSA Software Token The Contivity VPN Client can be configured to detect the installation of the RSA Software Token through the presence of stauto32.dll. Users will then be prompted for their Pin only. The Tokencode displayed on the Software Token is automatically coupled with the Pin an...
Page 11 - Alphanumeric PINS; RSA Software Updates; RSA Authentication Utility 1.0 Build 25
Alphanumeric PINS The Contivity VPN Client does not allow alphabetic characters to be entered in the Passcode field of the connection dialog box. There is a workaround for instances where alphanumeric PINs are allowed for SecurID users, the Contivity VPN Client must be configured to display separate...
Page 12 - RSA Authentication Utility (SID800 Integration); System-generated RSA SecurID SID800 PIN with VPN Client
RSA Authentication Utility (SID800 Integration) Authentication fails if user enters 0000 as permanent SecurID PIN. A user may not be able to authenticate when completing the New PIN procedure if the user enters four zeros (0000) as the permanent PIN. You cannot use 0000 as a permanent PIN. System-ge...