IPsec Mobile Group Pools Keys Tab (Plus Only)¶
The Mobile Group Pools tab under VPN > IPsec defines additional group mappings to address pools. This is most useful when utilizing EAP-RADIUS and supplying a Class attribute to identify pool membership for an authenticated user. Additional Mobile Group Pools are only used when Group Authentication is enabled in the Mobile Clients tab under VPN > IPsec
- Groups:
A string of comma separated group names. Must not overlap with the Authentication Groups selected on the Mobile Clients tab or the Groups of any previously configured Mobile Group Pool.
- Virtual Address Pool:
A subnet of addresses to assign to peers which map to this Mobile Group Pool.
Warning
This configuration creates a new pool which must not overlap existing pools. As such, this address must be outside of the pool defined on the Mobile Clients tab and different from any other pool defined on other PSK tab entries or Mobile Group Pool entries (Plus only).
- DNS Server:
A DNS server that the firewall will push to peers in this group. Leave blank to use the DNS server value(s) from the Mobile Clients tab.