71
None Withthisselection,nousernameorpasswordauthenticationisrequiredfordial-inaccess.Thisisnot
recommended.
PAP PasswordAuthenticationProtocol(PAP)istheusualmethodofuserauthenticationusedontheinternet:
sending a username and password to a server where they are compared with a table of authorized users. Whilst
mostcommon,PAPistheleastsecureoftheauthenticationoptions.
CHAP Challenge-HandshakeAuthenticationProtocol(CHAP)isusedtoverifyauser'snameandpasswordforPPP
Internetconnections.ItismoresecurethanPAP,theothermainauthenticationprotocol.
MSCHAPv2 MicrosoftChallengeHandshakeAuthenticationProtocol(MSCHAP)isauthenticationforPPPconnections
between a computer using a Microsoft Windows operating system and a network access server. It is more
securethanPAPorCHAP,andistheonlyoptionthatalsosupportsdataencryption
• ConsoleServersallsupportdial-backforadditionalsecurity.ChecktheEnable Dial-Back box and enter the phone
numbertobecalledtore-establishanOoBlinkonceadial-inconnectionhasbeenlogged
5.1.2 Using SDT Connector client for dial-in
AdministratorscanusetheirSDTConnectorclienttosetupsecureOoBdial-inaccesstoalltheirremoteConsoleServers.
Withapointandclickyoucaninitiateadial-upconnection.RefertoChapter6.5.
5.1.3 Set up Windows XP/ 2003/Vista/7 client for dial-in
• OpenNetwork Connections in Control Panel and click the New Connection Wizard
• Select Connect to the Internet and click Next
• OntheGetting Ready screen select Set Up My Connection Manually and click Next
• OntheInternet Connection screen select Connect Using a Dial-Up Modem and click Next
• EnteraConnection Name(anynameyouchoose)andthedial-upPhone Number that will connect thru to the Console
Server modem
Chapter 5: Firewall, Failover and Out-of-Band