description.txt 715 B

123456789
  1. The roadwarriors <b>carol</b> an <b>dave</b> set up a connection to gateway
  2. <b>moon</b>. At the outset the gateway authenticates itself to the client by
  3. sending an IKEv2 <b>RSA signature</b> accompanied by a certificate.
  4. <b>carol</b> and <b>dave</b> then use the <b>EAP-MD5</b> protocol to authenticate
  5. against the gateway <b>moon</b>. The user credentials of <b>carol</b>
  6. and <b>dave</b> are kept both on the local clients and the RADIUS server <b>alice</b>.
  7. <b>carol</b> possesses the RADIUS class attribute <b>Research</b> and therefore obtains
  8. access to the <b>research</b> subnet behind gateway <b>moon</b> whereas <b>dave</b>
  9. belongs to the class <b>Accounting</b> and has access to the <b>access</b> subnet.