Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Register DualShield RADIUS Server

  1. Log in to the WebAdmin interface of Sophos XG
  2. Under "Configure" Select "Authentication" from the menu on the left
  3. Select “Servers” Tab




4. Click "Add"

5. Configure as follows:

OptionValue
Server Name:Radius server
Server Name:Friendly name
Server

...

6. Server Name: DualShield / Deepnet

7. Server IP: IP address of where you installed the DualShield Radius Server software

...

IP:

...

Radius Server IP
Authentication Port:1812

...

Time-out:30

...

Accounting port: 1813

...

Shared Secret:This must match the one you specified under DualShield configuration

...

Domain name:Enter

...

your domain name

...

Group name attribute:memberof


14Click 6. Click "Test server settings"
connection" and if successful click "Save"

7. Click on the "ServicesImage Removed


Enter a test Username and Password

Now, click “Authenticate example user”


Enable Auto User creation for the RADIUS users

  1. Select “Definitions & Users -> Authentication Servers”
  2. Select “Global Settings” Tab
  3. Enable “Create users automatically”
  4. Click Apply.
  5. Choose “End-User Portal” and “SSL VPN”
  6. Click Apply

Allow RADIUS user to access the End-User Portal

In order to get their SSL VPN client and configuration, users have to initially log in to the End User portal. Make sure that RADIUS authenticated users are allowed to log in.

  1. Select “Management -> User Portal”
  2. Add the “Radius Users” group to the list of allowed users. You can choose this group by clicking on the Folder icon and drag and drop it from the list on the left. 

Allow RADIUS users to use the SSL VPN client

  1. Select Remote Access -> SSL
  2. Add the "Radius Users" group to the list of allowed users. You can choose this group by clicking on the Folder icon and drag and drop it from the list on the left.

Allow RADIUS users to use the HTML5 VPN portal

  1. Select Remote Access -> HTML5 VPN Portal
  2. Add the "Radius Users" group to the list of allowed users. You can choose this group by clicking on the Folder icon and drag and drop it from the list on the left.