R3721-F3210-F3171-HP High-End Firewalls Access Control Command Reference-6PW101

81
Description
Use authentication dvpn to configure the authentication method for DVPN users.
Use undo authentication dvpn to restore the default.
By default, the default authentication method for the ISP domain is used for DVPN users.
The specified RADIUS scheme must have been configured.
Related commands: local-user, authentication default, and radius scheme.
The following matrix shows the command and firewall compatibility:
Command F1000-A-EI/S-EI
F1000-E
F5000
Firewall module
authentication dvpn
No Yes Yes Yes
Examples
# Configure ISP domain test to use local authentication for DVPN users.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authentication dvpn local
# Configure ISP domain test to use RADIUS authentication scheme rd for DVPN users and use local
authentication as the backup.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authentication dvpn radius-scheme rd local
authentication login
Syntax
authentication login { hwtacacs-scheme hwtacacs-scheme-name [ local ] | local | none | radius-scheme
radius-scheme-name [ local ] }
undo authentication login
View
ISP domain view
Default level
2: System level
Parameters
hwtacacs-scheme hwtacacs-scheme-name: Specifies an HWTACACS scheme by its name, a
case-insensitive string of 1 to 32 characters.
local: Performs local authentication.
none: Does not perform any authentication.
radius-scheme radius-scheme-name: Specifies a RADIUS scheme by its name, a case-insensitive string of
1 to 32 characters.