Chapter 10 Configuring system settings 489

The Internet Assigned Numbers Authority (IANA) has designated SMI Network Management Private Enterprise Codes that can be assigned to the Vendor-Id attribute (see http://www.iana.org/assignments/enterprise-numbers).

RFC 2866 describes usage of the Vendor-Type attribute.

Contact your RADIUS system administrator for information about the vendor-specific attributes used by the external RADIUS audit server.

To simplify the task of finding audit entries in the RADIUS server log, do the following:

1In the RADIUS server dictionary, define a descriptive string (for example,

NSNAS-SSL-Audit-Trail).

2Map this string to the Vendor-Type value.

Configuring RADIUS auditing

To configure the Nortel SNAS 4050 to support RADIUS auditing, use the following command:

/cfg/sys/adm/audit

The Audit menu displays.

The Audit menu includes the following options:

/cfg/sys/adm/audit followed by:

servers

Accesses the RADIUS Audit Servers menu, in order

 

to configure external RADIUS audit servers for the

 

cluster (see “Managing RADIUS audit servers using

 

the CLI” on page 490).

 

 

vendorid

Corresponds to the vendor-specific attribute used by

 

the RADIUS audit server to identify event log

 

information from the Nortel SNAS 4050 cluster.

 

The default Vendor-Id is 1872 (Alteon).

 

 

Nortel Secure Network Access Switch 4050 User Guide

Page 489
Image 489
Nortel Networks 4050 manual Configuring Radius auditing, Map this string to the Vendor-Type value, NSNAS-SSL-Audit-Trail