Configure Multiple NetScreen-Remote VPN Clients using the same IKE ID (KB ID: KB4772)
| Article ID: | KB4772 |
|---|---|
| Former Article ID: | ns5202 |
| Published: | Nov 21, 2007 |
| Last Modified: | Nov 21, 2007 |
| Visible By: | Employee, PTAC, Partner, Customer, Public |
Back to Previous Page | Knowledge Base Home
Article URL
Synopsis
How do I create Multiple Dial Up VPN Users using the Same IKE ID?
Problem
Solution
This configuration example is using Shared IKE ID. This feature allows you to deploy and manage a large-scale distribution of NetScreen-Remote VPN Clients with minimal configuration on both the Juniper firewall and the NetScreen-Remote client. Administrators can deploy a single IKE tunnel ID for the NetScreen-Remote Clients and require each user to Authenticate with an individual ID. This saves administration work by:
- Providing IPSec protection with a common VPN tunnel configuration
- Eliminating the need to re-deploy a new group user id, should an employee leave the company

To create a Multiple Dial Up VPN using the same IKE ID, perform the following steps:
Juniper Firewall Side
Configure the global XAuth settings. For more information on configuring global XAuth settings, go to Configuring Global XAuth Settings.
Configure a Phase 1 Gateway for a Multiple Dial Up VPN. For more information on configuring a Phase 1 Gateway, go to Configuring an IKE Phase 1 Gateway for a Multiple Dial Up VPN.
Configure an IKE Phase 2 Proposal for a Multiple Dial Up VPN. For more information on configuring an IKE Phase 2 VPN for a Multiple Dial Up VPN, go to Configuring an IKE Phase 2 Gateway for a Multiple Dial Up VPN.
Configure a Dial Up VPN Policy for a Multiple Dial Up VPN. For more information on configuring a Dial Up VPN Policy for a Multiple Dial Up VPN, go to Configuring a Dial Up VPN Policy for a Multiple Dial Up VPN.NetScreen-Remote VPN Client Side
Configure the NetScreen-Remote client for a Multiple Dial Up VPN. For more information on configuring the NetScreen-Remote client for a Multiple Dial Up VPN, go to Configuring the NetScreen-Remote Client for a Multiple Dial Up VPN.
Category Description
By Product » Hardware » Firewalls » NetScreen Firewall/IPSec VPN
By Product » Software » Network Operating Systems » ScreenOS Software
By Network Technology » IP Protocols » Tunneling Protocols » IPSec
Purpose
Troubleshooting

