Configuring AAA for Network Users 445

Enter a separate command for each SSID, and its tag value, you want the WSS to support.

The following command configures a RADIUS proxy entry for a third-party AP RADIUS client at 10.20.20.9, sending RADIUS traffic to the default UDP port 1812 on the WSS:

23x0# set radius proxy client address 10.20.20.9 key radkey1

success: change accepted.

The IP address is the AP’s IP address. The key is the shared secret configured on the RADIUS servers. WSS Software uses the shared secret to authenticate and encrypt RADIUS communication.

The following command configures a proxy authentication rule that matches on all usernames associated with SSID mycorp. WSS Software uses RADIUS server group srvrgrp1 to proxy RADIUS requests and hence to authenticate and authorize the users.

23x0# set authentication proxy ssid mycorp ** srvrgrp1

To verify the changes, use the show config area aaa command.

Nortel WLAN Security Switch 2300 Series Configuration Guide

Page 445
Image 445
Nortel Networks 2300 manual 23x0# set radius proxy client address 10.20.20.9 key radkey1