USER’S GUIDE

For Device Level Security:

Specify Device Level Security (from Main Menu, Security, Security Level)

Select RADIUS from Off-Node Device Database Location (Main Menu, Security, Device Level Databases)

For User Level Security:

Select User Level Security (from Main Menu, Security, Security Level)

Enable RADIUS Authentication Server (from Main Menu, Security, User Level Databases)

If you are using an RFC2138 RADIUS Server, you must reflect this correctly under Main Menu, Security, Off-node Server Information, Misc Off-node Server Options.

USING CFGEDIT

1.Select option (2), RADIUS from the Off-node Server Information menu. If you need guidance to find this menu, refer to the instructions provided in the CSM Authentication Server configuration section. The following screen will be displayed:

RADIUS Authentication Server Menu:

 

 

Primary Server

 

 

IP Address

is 128.111.011.001

 

Shared Secret

is "SHAREDSECRET1234"

 

UDP Port Number

is 5800

 

Secondary Server

 

 

 

is Not Configured

 

Access Request Retry

 

 

Number of Access Retries

is 5

 

Time between Retries

is 2 seconds

RADIUS Server Options:

 

1)

Primary (Master) Server

 

2)

Secondary (Slave) Server

 

3)

Miscellaneous Information

 

Select function from above or <RET> for previous menu:

2.Select (1) Primary Server to enter the following information:

a.IP address of the Authentication Server

b.shared secret between the CyberSWITCH and Authentication Server

c.UDP port number used by the Authentication Server

3.Optional: configure a secondary RADIUS Server with selection (2). In the event that the primary server does not respond to system requests, the secondary server will be queried for device authentication information. The address of the Secondary RADIUS Server must not be the same as the Primary RADIUS Server.

4.Select Miscellaneous Information to finish the configuration. Specify the number of access request retries that the system will send to the Authentication Server, as well as the time between retries.

210 CyberSWITCH

Page 210
Image 210
Enterasys Networks CSX5500, CSX6000, CSX7000 manual Is SHAREDSECRET1234