78 Chapter 4 Configuring user tunnelsNN46110-500Configuring group characteristicsIn addition to assigning users to groups and providing authentication access, youcan configure other group characteristics:1 Go to the Profiles > Groups window and click on the Edit button next to thegroup that you want to configure.2 Under the Connectivity section, click on the Configure button to change theany of the group characteristics.3 In the Contact Information field, enter the name of someone who serves asthe point of contact. This is typically the administrator.4 In the Access Hours field, specify the time ranges during which access isallowed for users in a group. These time ranges are also configured from theProfiles > Hours window.5 Specify the Call Admission Priority level (from low to highest) that youwant to permit for the group. Each level is assigned a percentage of the totalnumber of calls allowed access to the Nortel VPN Router. If there is aparticularly high number of users logged in, new users could be denied callaccess, based on their call admission priority, until existing callers disconnect.6 Specify the Forwarding Priority level (from low to highest) that you want toprovide to sessions for users in this group. Forwarding priority assures acertain level of latency and bandwidth allocation. For example, a group withthe highest forwarding priority has the highest possible bandwidth service andthe lowest level of latency. Conversely, if there is a particularly high level oftraffic on the line, packets for a low-priority group might be delayed ordropped. Since a low-priority group has the least amount of bandwidth andthe highest level of latency, some of its packets would wait until thehigher-priority-level packets have been forwarded or they would be dropped.7 For the Number of Logins, enter the maximum number of simultaneouslogins IPsec clients in the group are allowed. The Nortel VPN Router does notenforce the maximum number of logins across tunnel types. If you set thenumber of simultaneous logins to 1, a client can still get another tunnel typeconnection if the client is configured to use multiple tunnel types. To limit thenumber of connections a client can have, configure the user for a single tunneltype.8 Select Enabled to enable the Password Management facilities: