Comments

  • With a local Gateway as RADIUS server this works indeed as it's not dependent on AD. I'd recommend naming your AuthPoint group case sensitive "SSLVPN-Users" as that's the default group being used by the Firebox. Once that works you can change it on both ends if you like.
  • At present for IPSec and SSL VPN the Firebox has to be a RADIUS client and needs to talk to an AuthPoint Gateway acting as RADIUS server, it's best to have the AuthPoint Gateway locally to the Firebox. If you have many Fireboxes in theory you can do RADIUS over a BoVPN to a centralized AuthPoint Gateway, preventing you…