Cisco CP-7962G Administration Guide - Page 116

VPN Configuration

Page 116 highlights

Security Configuration Menu Chapter 4 Configuring Settings on the Cisco Unified IP Phone Table 4-25 describes the 802.1X Authentication Real-Time Status. Table 4-25 802.1X Authentication Real-Time Status Option 802.1X Authentication Status Description To Change Real-time progress of the 802.1X authentication Display only-Cannot configure. status, displaying one of the following states: • Disabled-802.1X is disabled and transaction was not attempted • Disconnected-Physical link is down or disconnected • Connecting-Trying to discover or acquire the authenticator • Acquired-Authenticator acquired, awaiting authentication to begin • Authenticating-Authentication in progress • Authenticated-Authentication successful or implicit authentication due to timeouts • Held-Authentication failed, waiting before next attempt (approximately 60 seconds) VPN Configuration The VPN Configuration menu allows you to enable the VPN Client connection using the Secure Sockets Layer (SSL). The VPN connection is used for situations in which a phone is located outside a trusted network or when network traffic between the phone and Cisco Unified Communications Manager must cross untrusted networks. The options are described in Table 4-26. Note The VPN Client feature is supported only for the Cisco Unified IP Phone 7942G, 7945G, 7962G, 7965G, and 7975G. Your system administrator determines if your phone needs the VPN Client feature enabled and sets it up as needed, based on whether or not your phone is used outside the corporate network. For more information, see your system administrator. If the administrator enabled the VPN Client feature and the VPN Client mode is enabled on the phone, you are prompted for your credentials as follows: • If your phone is located outside the corporate network-You are prompted at login to enter your credentials based on the authentication method that your system administrator configured on your phone. • If your phone is located inside the corporate network- - If Auto Network Detection is disabled, you are prompted for credentials, and a VPN connection is possible. - If Auto Network Detection is enabled, you cannot connect through VPN so you are not prompted. 4-44 Cisco Unified IP Phone Administration Guide for Cisco Unified Communications Manager 8.0 (SCCP and SIP) OL-21011-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241

4-44
Cisco Unified IP Phone Administration Guide for Cisco Unified Communications Manager 8.0 (SCCP and SIP)
OL-21011-01
Chapter 4
Configuring Settings on the Cisco Unified IP Phone
Security Configuration Menu
Table 4-25
describes the 802.1X Authentication Real-Time Status.
VPN Configuration
The VPN Configuration menu allows you to enable the VPN Client connection using the Secure Sockets
Layer (SSL). The VPN connection is used for situations in which a phone is located outside a trusted
network or when network traffic between the phone and Cisco Unified Communications Manager must
cross untrusted networks. The options are described in
Table 4-26
.
Note
The VPN Client feature is supported only for the Cisco Unified IP Phone 7942G, 7945G, 7962G, 7965G,
and 7975G
.
Your system administrator determines if your phone needs the VPN Client feature enabled and sets it up
as needed, based on whether or not your phone is used outside the corporate network. For more
information, see your system administrator.
If the administrator enabled the VPN Client feature and the VPN Client mode is enabled on the phone,
you are prompted for your credentials as follows:
If your phone is located outside the corporate network—You are prompted at login to enter your
credentials based on the authentication method that your system administrator configured on
your phone.
If your phone is located inside the corporate network—
If Auto Network Detection is disabled, you are prompted for credentials, and a VPN connection
is possible.
If Auto Network Detection is enabled, you cannot connect through VPN so you are
not prompted.
Table 4-25
802.1X Authentication Real-Time Status
Option
Description
To Change
802.1X Authentication
Status
Real-time progress of the 802.1X authentication
status, displaying one of the following states:
Disabled—802.1X is disabled and transaction
was not attempted
Disconnected—Physical link is down or
disconnected
Connecting—Trying to discover or acquire the
authenticator
Acquired—Authenticator acquired, awaiting
authentication to begin
Authenticating—Authentication in progress
Authenticated—Authentication successful or
implicit authentication due to timeouts
Held—Authentication failed, waiting before
next attempt (approximately 60 seconds)
Display only—Cannot configure.