I am trying to use Radius authentication for my SR/SC users. If the Radius server is on the same network, everything works fine, but I have a need to authenticate to a Radius server on the opposite end of our VPN.
Here's the problem: The firewall chooses to send the Radius traffic cleartext rather than encrypt it (based on implied rules). Other traffic (ssh, icmp, etc.) is encrypted, but Radius is not.
Short of replacing all of my implied rules with manual rules, does anyone know of a way to make the firewall encrypt the Radius traffic (ie. a hack to say that Radius is NOT included in VPN-1/FW-1 control connections)?
I appreciate the help.
John Sims
jasims@cornerstones.com
Here's the problem: The firewall chooses to send the Radius traffic cleartext rather than encrypt it (based on implied rules). Other traffic (ssh, icmp, etc.) is encrypted, but Radius is not.
Short of replacing all of my implied rules with manual rules, does anyone know of a way to make the firewall encrypt the Radius traffic (ie. a hack to say that Radius is NOT included in VPN-1/FW-1 control connections)?
I appreciate the help.
John Sims
jasims@cornerstones.com