132

AT-WR4500 Series - IEEE 802.11abgh Outdoor Wireless Routers

 

RouterOS v3 Configuration and User Guide

 

 

7AAA Configuration

7.1RADIUS client

7.1.1 General Information

Summary

This document provides information about RouterOS built-in RADIUS client configuration, supported RADIUS attributes and recommendations on RADIUS server selection.

Specifications

Packages required: system

License required: Level1

Submenu level: /radius

Standards and Technologies: RADIUS

RelatedTopics

HotSpot User AAA

Router User AAA

PPP User AAA

IP Addresses and ARP

Description

RADIUS, short for Remote Authentication Dial-In User Service, is a remote server that provides authentication and accounting facilities to various network apliances. RADIUS authentication and accounting gives the ISP or network administrator ability to manage PPP user access and accounting from one server throughout a large network. The RouterOS has a RADIUS client which can authenticate for HotSpot, PPP, PPPoE, PPTP, L2TP and ISDN connections. The attributes received from RADIUS server override the ones set in the default profile, but if some parameters are not received they are taken from the respective default profile.

The RADIUS server database is consulted only if no matching user acces record is found in router's local database.

Traffic is accounted locally with RouterOS Traffic Flow and snapshot image can be gathered using Syslog utilities. If RADIUS accounting is enabled, accounting information is also sent to the RADIUS server default for that service.

7.1.2 RADIUS Client Setup

Submenu level: /radius

Description

This facility allows you to set RADIUS servers the router will use to authenticate users.

Property Description

accounting-backup(yes no; default: no) - this entry is a backup RADIUS accounting server

accounting-port(integer; default: 1813) - RADIUS server port used for accounting

address (IP address; default: 0.0.0.0) - IP address of the RADIUS server

authentication-port(integer; default: 1812) - RADIUS server port used for authentication

called-id(text; default: "") - value depends on Point-to-Point protocol: ISDN - phone number dialled (MSN)

PPPoE - service name PPTP - server's IP address L2TP - server's IP address

Page 132
Image 132
Allied Telesis AT-WR4500 manual Radius client, Radius Client Setup