iPhone in Business Virtual Private Networks
VPN protocols
- Cisco IPSec
- L2TP/IPSec
- PPTP
Authentication methods
- Password (MSCHAPv2)
- RSA SecurID
- CRYPTOCard
- X.509 digital certificates
- Shared secret
VPN Deployment Scenario
The example depicts a typical deployment with a VPN server/concentrator as well as an authentication server controlling access to enterprise network services.
- iPhone requests access to network services (typically over a PPP connection).
- The VPN server/concentrator receives the request and then passes it to the authentication server.
- In a two-factor token environment, the authentication server would then manage a time-synchronized token key generation with the key server. If a certifi cate authentication method is deployed, an identity certifi cate needs to be distributed to iPhone prior to authentication. If a password method is deployed, the authentication process proceeds with user validation.
- Once a user is authenticated, the authentication server validates user and group policies.