
B-5
Cisco PIX Firewall and VPN Configuration Guide
78-15033-01
Appendix B Configuration Examples for Other Remote Access Clients
Xauth with RSA Ace/Server and RSA SecurID
New PIN Mode
This mode is seen when the user is first assigned a token and needs to connect before a PIN can be
assigned or created by the user (Case 1), or if for some reason the administrator puts the token in the
New PIN Mode (Case 2).
Case 1: User has no previous PIN or the PIN has been cleared.
In this case, enter the value that is currently being displayed on the token in the prompt that requests the
username and password.
Case 2: User has an existing PIN and needs to change it.
In this case, enter the PIN in the Software Token dialog box or on the Pinpad, and use the value thus
obtained as the password in the User Authentication dialog box that requests the username and
password.
The next prompt, in either case, is for the New PIN. If the user is configured for user-created PIN
allowed, enter
y if the user wants the system to generate the PIN. In this case, the system sends the PIN
in the next prompt to the client. If
n is entered, the user is prompted to select the PIN. If the user is
configured for user-created PIN required, then the prompt requests that the user select the PIN.
The next prompt requires the user to enter the password using the new PIN. Enter the newly created PIN
in the Software Token dialog box or Pinpad and use the value thus obtained.
For a system generated PIN:
A y should be entered at this point. The server then sends a PIN message to the user. Enter the next
tokencode using the new PIN.
The user creates the PIN, or the user is required to create the PIN if the user enters n in the prompt that
asks whether the system should generate the PIN or when the user is required to create the PIN.
After the PIN is entered, and is accepted by the server, another Software Token dialog box appears.
Enter the next tokencode, using the new PIN, in the Software Token dialog box.
SecurID with Cisco VPN 3000 Client Version 2.5
This section describes how to use the Cisco VPN 3000 Client Version 2.5 in the three token modes. It
includes the following topics:
• Token Enabled, page B-6
• Next Tokencode Mode, page B-6
• New PIN Mode, page B-6
Kommentare zu diesen Handbüchern