RSA SecurID Ready Implementation Guide
Last Modified: September 30, 2005
Partner Information
Product Information
Partner Name
Web Site www.nortelnetworks.com
Product Name
Version & Platform
Product Description
Product Category
Nortel Networks
Nortel VPN Router
1050, 1740, 2700, 5000 Series
Each Nortel VPN Router is a single hardware device that provides routing,
firewall, bandwidth management, encryption, authentication, and data
integrity for secure tunneling across managed IP networks and the Internet.
With Contivity VPN Switches, you can connect remote users, branch
offices, suppliers, and customers with the cost and performance
advantages of shared IP networks and the security and control you would
expect from private networks.
Virtual Private Networking
1
Solution Summary
Partner Integration Overview
Authentication Methods Supported
List Library Version Used
RSA Authentication Manager Name Locking
RSA Authentication Manager Replica Support
Secondary RADIUS Server Support
Location of Node Secret on Agent
RSA Authentication Agent Host Type
RSA SecurID User Specification
RSA SecurID Protection of Administrative Users
RSA Software Token API Integration
Use of Cached Domain Credentials
RADIUS
N/A
No
No
Yes (3)
‘None stored’
Communication Server
Designated users
No
Yes
No
2
Product Requirements
Partner Product Requirements: Nortel VPN Router
Firmware Version
Partner Product Requirements: Nortel VPN Client
Operating System Required Patches
Windows XP
Windows 2000
Windows 98
Windows ME
Note: Nortel VPN Client Version 4.86 is the last release that provides
support for the Windows NT operating system.
Version 4.91 will be the last release that provides support for Windows 98
and Windows ME operating systems.
V05_05.202
3
Agent Host Configuration
To facilitate communication between the Nortel VPN Router and the RSA Authentication Manager / RSA
SecurID Appliance, an Agent Host record must be added to the RSA Authentication Manager database.
The Agent Host record identifies the
about communication and encryption.
To create the Agent Host record, you will need the following information.
• Hostname
• IP Addresses for all network interfaces
• RADIUS Secret (When using RADIUS Authentication Protocol)
When adding the Agent Host Record, you should configure the Nortel VPN Router as Communication
Server.
the
Please refer to the appropriate RSA Security documentation for additional information about Creating,
Modifying and Managing Agent Host records.
This setting is used by the RSA Authentication Manager to determine how communication with
Nortel VPN Router will occur.
Note: Hostnames within the RSA Authentication Manager / RSA SecurID
Appliance must resolve to valid IP addresses on the local network.
Nortel VPN Router within its database and contains information
4