Re: Radius authentication over Site-to-Site Hello people, I've the same problem. The interesting question for me is: How is possible to deactivate one or more implied rules of the "accept VPN-1 & FW-1 control connections" group? Thanks a lot for any feedback. Maurizio |