cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2329
Views
0
Helpful
1
Replies

VPN3002 in PAT-Mode and individual user authentication

kfischbach
Level 1
Level 1

Hi all,

i've three questions about the VPN3002 connected to an VPN3005 in PAT mode

and with individual user authentication!

First:

Is it possible to use this funktion for more than one User connected at the

private lan.

Because i tried this but when we second user was authenticated the first one couldn't work anymore.

Second:

When we first answer is YES, can be the users in an differend group as the

VPN3002 Client it self?

Third:

What is, when there is a router between the private lan and the users?

Because the user authentication field is shown only when the users

are directly connected on the privat lan.

I tried it with PAT, but this was not possible because the VPN3002 can

differ the users.

I think it will be possible with NAT but then i was running in my first question.

regards

Karlheinz

1 Accepted Solution

Accepted Solutions

edadios
Cisco Employee
Cisco Employee

1> This is the main function of the user authentication feature see here :

http://www.cisco.com/univercd/cc/td/doc/product/vpn/vpn3002/3_5/get_star/gs1under.htm#xtocid13

2> Users can not be in different group. Group is dependent on what the 3002 has logged in.

3> It would not route to other subnets connected to the private. The design of the 3002 is such that only the subnet behind it, is what it can perform vpn for.

Regards,

View solution in original post

1 Reply 1

edadios
Cisco Employee
Cisco Employee

1> This is the main function of the user authentication feature see here :

http://www.cisco.com/univercd/cc/td/doc/product/vpn/vpn3002/3_5/get_star/gs1under.htm#xtocid13

2> Users can not be in different group. Group is dependent on what the 3002 has logged in.

3> It would not route to other subnets connected to the private. The design of the 3002 is such that only the subnet behind it, is what it can perform vpn for.

Regards,