ZyXEL Communications 1100 Network Router User Manual


 
Chapter 31 AAA Server
ZyWALL 110/310/1100 Series User’s Guide
401
Figure 264 RADIUS Server Network Example
31.1.3 ASAS
ASAS (Authenex Strong Authentication System) is a RADIUS server that works with the One-Time
Password (OTP) feature. Purchase a ZyWALL OTP package in order to use this feature. The package
contains server software and physical OTP tokens (PIN generators). Do the following to use OTP.
See the documentation included on the ASAS’ CD for details.
1 Install the ASAS server software on a computer.
2 Create user accounts on the ZyWALL and in the ASAS server.
3 Import each token’s database file (located on the included CD) into the server.
4 Assign users to OTP tokens (on the ASAS server).
5 Configure the ASAS as a RADIUS server in the ZyWALL’s Configuration > Object > AAA Server
screens.
6 Give the OTP tokens to (local or remote) users.
31.1.4 What You Can Do in this Chapter
•Use the Configuration > Object > AAA Server > Active Directory (or LDAP) screens
(Section 31.2 on page 403) to configure Active Directory or LDAP server objects.
•Use the Configuration > Object > AAA Server > RADIUS screen (Section 31.3 on page 406)
to configure the default external RADIUS server to use for user authentication.
31.1.5 What You Need To Know
AAA Servers Supported by the ZyWALL
The following lists the types of authentication server the ZyWALL supports.
•Local user database
The ZyWALL uses the built-in local user database to authenticate administrative users logging
into the ZyWALL’s Web Configurator or network access users logging into the network through
the ZyWALL. You can also use the local user database to authenticate VPN users.