Chapter 4 User Notes 69Nortel Business Secure Router 222 Configuration — BasicsVPN Client Termination1 Change of User Account Does Not Drop Existing ConnectionsIf a VPN Client user account is de-activated, deleted, or changed, and that user iscurrently connected, the connection is not automatically dropped. To drop theconnection, the administrator needs to disconnect the user using the 'Disconnect'function in the VPN/SA Monitor GUI. This is consistent with other NortelContivity products.2 User Name RestrictionsUser names are limited to a maximum length of 63 characters.3 VPN Client Account Password RestrictionsThe password for a VPN Client user cannot contain the single- or double-quotecharacters.4 IP Pool Address OverlapWhen defining multiple VPN Client Termination IP pools, the router uses the IPSubnet mask, and not the pool size, to determine if the pools are overlapping. Thesubnet mask of each pool should be appropriate for the size of the VPN ClientTermination IP pool.5 VPN Client Termination - Failure In Specific Addressing SituationIf the Client has an assigned IP address that is the same as the IP address assignedfor the Client Tunnel, the connection will fail to be established.6 VPN Client Termination - Configuration RestrictionsThis router has some restrictions when compared to larger Contivity Routers(1000 Series and above). In particular,VPN Clients cannot be added to the LAN subnet. They must have addressesoutside of the LAN subnet.