Adding XAUTH to the Easy VPN Server Configuration

XAUTH gives you the ability to require that users who attempt to create an IPSec tunnel to the Easy VPN Server supply additional identity credentials. XAUTH is a good security procedure. A lot of VPN implementations require that the remote device supply only a preshared key and group name. Both of those parameters are hard-coded on the remote device. What happens if a user's laptop is stolen? The thief need only start the VPN Client to access corporate resources because no additional identity mechanisms are in place.

That is where XAUTH comes into play. You not only require a user to have the correct group name and preshared key, but you also require that the user supply a unique username and ...

Get SECUR Exam Cram™ 2 (Exam 642-501) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.