aaa
Syntax
aaa { access-profile access-profile { config-payload-password config-payload-password; } client { password; username; } }
Hierarchy Level
[edit security ike gateway gateway-name]
Description
Specify that extended authentication
is performed in addition to IKE Phase 1 authentication for remote
users trying to access a VPN tunnel. This authentication can be through
Extended Authentication (XAuth) or Extensible Authentication Protocol
(EAP). Include a previously created access profile, configured with
the edit access profile
statement, to specify the access
profile to be used for authentication information.
Options
access-profile profile-name |
Name of the previously created access profile to use for extended authentication for remote users trying to access a VPN. |
config-payload-password |
Specify common client password for IKEv2 configuration payload with 1 to 128 characters. |
client |
Specify an AAA client uername and password for each configured authenticator that is allowed to request authentications for supplicants.
|
Required Privilege Level
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.
Release Information
Statement introduced in Junos OS Release 15.1X49-D80.
config-payload-password
option introduced in Junos
OS Release 20.1R1.