Using SMS with RADIUS Server
RADIUS Attributes Sent In Access-
Request Packets
The SMS2000 sends the following attributes in
RADIUS Attributes Received in Access- Accept Packets
See Appendix A, “Radius
Using Both RADIUS and OCS
Authentication
Because the OCS in some ways manages the SMS2000, there can be only one OCS server configured on the SMS2000, and it must be for the default group. However, a RADIUS authentication server can be added to any group, and the OCS may be on or off for various groups.
To configure both RADIUS and the OCS on one SMS2000, enter the following commands:
sms2000% auth off
sms2000% group add radgroup sms2000% group *
Active group is now “*”
sms2000% auth add web http://web_ip/pp/welcome.php3 secret web_secret
sms2000% acct add radius radius_ip secret radius_secret sms2000% group radgroup
Active group is now “radgroup.”
sms2000% auth add radius radius_ip secret radius_secret sms2000% acct add radius radius_ip secret radius_secret sms2000% set rule israd 1 rule_expression
Note: If your OCS is configured, you need not turn authentication off. Simply use group add radgroup noinherit to prevent the new group from inheriting the OCS server configuration.
TUT Systems, Inc | Page 81 of 104 | P/N |