Creating and Managing Users in the Local User Database 277

Table 24 Authentication Attributes for Local Users (continued)

Attribute

Description

Valid Value(s)

mobility-profile

Mobility Profile

Name of an existing Mobility Profile,

(network access

attribute for the user.

which can be up to 32 alphanumeric

A WX switch can

characters, with no tabs or spaces.

mode only)

provide network access

If the Mobility Profile feature is

 

 

for users associated

enabled, and a user is assigned the

 

with a third-party AP

 

name of a Mobility Profile that does

 

that has authenticated

 

not exist on the WX Wireless Switch,

 

the users with RADIUS.

the user is denied access.

 

You can connect a

 

 

 

third-party AP to a WX

 

 

switch and configure

 

 

the WX to provide

 

 

authorization for

 

 

clients who

 

 

authenticate and

 

 

access the network

 

 

through the AP. For

 

 

more information, see

 

 

“Configuring Mobility

 

 

Profiles” on page 306.

 

service-typeType of access the user is requesting.

Access type, which can be one of the following numbers:

2—Framed; for network user access

6—Administrative; for administrative access, with authorization to access the enabled (configuration) mode. The user must enter the enable command to access the enabled mode.

7—NAS-Prompt; for administrative access to the nonenabled mode only. In this mode, the enable command is not available and the user cannot log in to the enabled mode.

For administrative sessions, the WX switch will send 7 (NAS-Prompt) unless the service-type attribute has been configured for the user.

The RADIUS server can reply with one of the values listed above.

If the service-type is not set on the RADIUS server, administrative users receive NAS-Prompt access, and network users receive Framed access.

Page 277
Image 277
HP Manager Software manual Attribute Description Valid Values Mobility-profile