[NTLUG:Discuss] CiscoVPN with RSA SecureID

Stephen Davidson gorky at freenet.carleton.ca
Thu Dec 10 16:05:30 CST 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Chris Cox wrote:
> On Thu, 2009-12-10 at 15:47 -0600, Stephen Davidson wrote:
>> -----BEGIN PGP SIGNED MESSAGE-----
>> Hash: SHA1
>>
>> Greetings.
>>
>> I am trying to VPN INTO a Cisco VPN with RSA SecureID.  Anyone know how
>> to set up the client on the linux side?  All I am finding right now is
>> the server side documentation, especially in regards to the RSA stuff.
> 
> There's not a whole lot to this.  You might have a *.pcf file from
> Windows land.  But basically you'll have a GroupName and GroupPwd
> which might be encrypted as enc_GroupPwd.  But if you're using
> Cisco's client (the kernel intrusive thing), then you should have
> the .pcf files from your sys admin and they just need to be placed
> in /etc/Cisco*/Profiles
> 
> However, if you're able (and you might not based on options
> on your VPN concentrator), I'd use vpnc instead.  It's much more
> reliable than the Cisco VPN client.  The vpnc conf files are much
> smaller and you'll need the GroupName and the unecrypted
> Password/Secret.
> 
> 
Hi Chris.

Seems I left out a few words, or maybe a paragraph (sorry).  I am using
vpnc, but they are using RSA SecureID for the Pass Tokens.  So, I am
trying to figure out how to get these two techs to work together on a
Linux client.  Hoping somebody on the list has an idea or two.

Regards,
Steve

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.9 (GNU/Linux)
Comment: Using GnuPG with SUSE - http://enigmail.mozdev.org

iEYEARECAAYFAkshcKoACgkQSphIUSiVzgY+8ACeOlI52IYnooHsmRv3vJj9S1oH
Kd8An1q8+OP25z2o6znJ/2ftZeinnVRg
=H6lv
-----END PGP SIGNATURE-----



More information about the Discuss mailing list