Configuring Virtual Private Networks (VPNs) and Security
Configuring Advanced VPN Parameters
Cisco RV220W Administration Guide 116
6
STEP 5 Optionally in the Extended Authentication section, enable Extended
Authentication (XAUTH). When connecting many VPN clients to a VPN gateway
router, XAUTH allows authentication of users with methods in addition to the
authentication method mentioned in the IKE SA parameters.
• XAUTH Type—Choose one of the following options:
- None—Disables XAUTH.
- Edge Device—Authentication is done by one of the following methods:
User Database—User accounts created in the router are used to
authenticate users. After completing this procedure, enter the users on
the VPN > IPsec > VPN Users page. See Configuring VPN Users,
page 122.
RADIUS-PAP or RADIUS-CHAP—Authentication is done by using a
RADIUS server and either password authentication protocol (PAP) or
challenge handshake authentication protocol (CHAP). After completing
this procedure, set up the RADIUS server on the Security > RADIUS
Server page. See Using the Cisco RV220W With a RADIUS Server,
page 146.
- IPsec Host—The router is authenticated by a remote gateway with a
username and password combination. In this mode, the router acts as a
VPN Client of the remote gateway. If you select this option, also enter the
Username and Password for the host.
STEP 6 Click Save to save your settings, or click Cancel to reload the page with the
current settings. Click Back to return to the VPN > IPsec > Advanced VPN Setup
page.