a. UnderManagement Authentication Servers, select a management role (for example,read-only) for the Default
Role.
b. Select(check) Mode.
c. For ServerGroup, select the server group that you just configured.
d. Click Apply.
In the CLI
aaa authentication-server radius rad1
host <ipaddr>
enable
aaa server-group corp_rad
auth-server rad1
set role condition Class value-of
aaa authentication mgmt
default-role read-only
enable
server-group corp_rad
In the followingexample, the RADIUS server returns the attribute Class to the controller; thevalue of this att ribute
can be “it”, in which case, the user is grantedt heroot role.I f the valueof the Class attribute is anything else, the
useri s granted the defaultread-only role.
Configuring a se t-value server-derivation rule
In the WebUI
1. Navi gate to the Configuration > Security > Authentication > Servers page.
2. Select RADIUS Server t o display the Radius Server List.
a. To configurea R ADIUS server, enterthe name for the server (for example,rad1) and click Add.
b. Select the name to configure server parameters,such as IP address. Select the Mode checkbox to activate the
server.
c. Click Apply.
3. Select Server G roup to display the Server Group list.
a. Enter the name of the new server group (for example,corp_rad) and click Add.
b. Select the name to configure the server group.
c. UnderServers, click New to add a server to the group.
d. Select a server from the drop-down menu and click Add Server.
e. UnderServer Rules, click New to add a server rule.
f. For Condition, select Class from the scrolling list. Select equals from the drop-down menu.Enter it. Select
Set Role fromt he drop-downmenu. For Value, select root from the drop-down menu.
g. Click Add.
h. Click Apply.
4. Navi gate to the Configuration > Management > Administration page.
a. UnderManagement Authentication Servers, select a management role (for example,read-only) for the Default
Role.
b. Select (check) Mode.
c. For ServerGroup, select the server group that you just configured.
DellPowerConnect W- Series ArubaOS 6.2 | UserGuide ManagementAccess |629