SonicWallSMAConnectTunnel12.0DeploymentPlanningGuide
CommonVPNConfigurations
30
12 ScrolldowntotheDomainauthenticationforwardingareatospecifyhowthedomainnameportionof
thecredentialswillbeforwarded.
13 IntheDomainauthenticationsection,selecteither:
•Forwardacustomdomainname,thedefault,andenterthedomainnameineitherNILMor
Kerberosstyle.
•Forwardtheauthenticationservername
asthedomainname.
14 IntheOne‐TimePasswordssection,selecttheUseone‐timepasswordswiththisauthenticationserver
checkboxtoenableaone‐timepassword.Thisisenabledbydefault.
aEnterthelengthofthepasswordinthePasswordscontainfield;thedefaultis8characters.
b Selectthetype
ofacceptablecharacters,suchasAlphabetic,Numericfromthecharacters
drop‐downmenu.
cIntheFromaddressfield,entertheemailaddressfromwhichemailissenttotheuser.
d Optionally,iftheprimaryemailaddressattributeexistsontheauthenticationserver,enteritin
thePrimaryemailaddressattributefield.
e Optionally,
ifthesecondaryemailaddressattributeexistsontheauthenticationserver,enteritin
theSecondaryemailaddressattributefield.
fEnterthesubjectfortheemailsenttotheuserintheSubjectfield;thedefaultisOnetime
password.
gEnterthemessagetobesenttotheuserinthe
Bodyfield;thedefaultisHi{username},Yourone
timepasswordis:{password}.
15 Totestthemessage,enteranemailaddressintheEm ailAddressfieldandclicktheSendtestmessage
button.
16 ClickSave.YouarereturnedtotheConfigureRealmpage.
17 FromtheAuthenticationserverdrop‐downmenu,
selecttheauthenticationserveryoujustconfigured
(CompanyDirectory).
18 ClickFinish(wewillcreatecommunitieswithintheCompanyXYZrealmlaterinthisprocess).
IdentifyingUsers
UsingtheADstoreassociatedwiththeCompanyXYZrealm,addtwoemployeesandtwopartners.
Toaddusers:
1 ClickUsers&Groupsinthemainnavigationmenu,andthenclicktheUserstab.