HP Access Control Client Software manual Radius Server Locations Reducing Inter-Site Traffic

Models: Access Control Client Software

1 338
Download 338 pages 18.69 Kb
Page 204
Image 204

Designing Access Controls

Choose RADIUS Servers

This option balances reducing traffic with easing management.

Table 3-69. RADIUS Server Locations (Reducing Inter-Site Traffic)

Access Control

Access Control

RADIUS Server

RADIUS Server

Credential

Credential

Component

Architecture

Devices

Location

Repository

Repository

Combination

 

 

 

 

 

Location

General

Multi-site

Software servers

One or more at

Directory service

Central site

 

distributed AAA

or NAC 800s

each site

 

 

 

with centralized

 

 

 

 

 

 

policies

 

 

 

 

 

Integrated server

Multi-site

AP 530s or

One or more at

Directory service

Central site

 

distributed AAA

Wireless Edge

each site

 

 

 

with centralized

Services Modules

 

 

 

 

policies

 

 

 

 

 

Integrated server/

Multi-site

AP 530s or

One or more at

Directory service

Central site

proxy

distributed AAA

 

Wireless Edge

each site

 

 

 

with centralized

 

Services

 

 

 

 

policies

 

Modules

 

 

 

 

 

Software

 

 

 

 

 

 

servers or NAC

 

 

 

 

 

 

800s

 

 

 

Turnkey server

Multi-site

Software servers

One or more at

Software servers

Servers at central

 

distributed AAA

or NAC 800s

each site

or NAC 800s

site

 

with centralized

 

 

 

 

 

 

policies

 

 

 

 

 

Integrated server/

Multi-site

AP 530s or

One or more at

Software servers

Servers at central

proxy with turnkey

distributed AAA

 

Wireless Edge

each site

or NAC 800s

site

server

with centralized

 

Services

 

 

 

 

policies

 

Modules

 

 

 

 

 

Software

 

 

 

 

 

 

servers or NAC

 

 

 

 

 

 

800s

 

 

 

 

 

 

 

 

 

 

Example. Choosing your access control architecture is not as daunting as it may seem—as you can see by following the decision process that the PCU network administrators used. For the sake of this example, PCU has established two satellite campuses, which are connected to the main campus in a WAN.

PCU network administrators begin by considering: should the same policies apply at each site? Because the off-campus sites are not truly autonomous locations, they decide to use the same policies for both. Some students attend classes at both the main campus and a satellite campus location.

3-88

Page 204
Image 204
HP Access Control Client Software manual Radius Server Locations Reducing Inter-Site Traffic