Add Users to a Firebox Mobile VPN Group

To open a Mobile VPN tunnel with the Firebox, remote users type their user name and password to authenticate. The Firebox uses this information to authenticate the user to the Firebox. To authenticate, users must be part of a Mobile VPN with IPSec group.

For information about how to create a Mobile VPN with IPSec group, go to Configure the Firebox for Mobile VPN with IPSec.

For more information on Firebox groups, go to Types of Firebox Authentication.

To add users to a group if you use a third-party authentication server, use the instructions provided in your vendor documentation.

Network Access Enforcement

To limit mobile VPN connections to devices that follow corporate policy, you can use network access enforcement. Before you enable network access enforcement for Mobile VPN groups, enable and configure network access enforcement at Subscription Services > Network Access Enforcement (Fireware v12.9 or higher).

For Mobile VPN with IPSec, to enable network access enforcement for a mobile VPN group, you must edit the group settings in the Authentication > Users and Groups configuration. Network access enforcement settings do not appear in the Mobile VPN with IPSec configuration. For information about how to enable network access enforcement for IPSec groups, go to Add Users to a Firebox Mobile VPN Group.

For all other mobile VPN methods, you can enable network access enforcement for a group in either of these locations:

  • Mobile VPN configuration
  • Authentication > Users and Groups configuration

For more information about network access enforcement, go to Network Access Enforcement Overview.

Add Users to a Group for Firebox (Firebox-DB) Authentication

For information about other user authentication settings, go to Define a New User for Firebox Authentication.