Before you begin 173
cAn MS IAS RADIUS server may require vendor parameters to
be configured on the Microsoft Management Console (MMC).
4To configure external authentication, you require the following
information about the authentication server configuration:
aRADIUS servers:
server IP address
port number used for the service
shared secret
Vendor-Id attribute
Vendor-Type
ATTENTION
You can assign vendor-specific codes to the Vendor-Id and
Vendor-Type attributes. The RADIUS server uses Vendor-Id and
Vendor-Type attributes in combination to identify what values
it will assign and send for attributes such as group name and
session timeout.
Each vendor has a specific dictionary. The Vendor-Id specified for
an attribute identifies the dictionary the RADIUS server will use to
retrieve the attribute value. The Vendor-Type indicates the index
number of the required entry in the dictionary file.
The Internet Assigned Numbers Authority (IANA) has
designated SMI Network Management Private Enterprise
Codes that can be assigned to the Vendor-Id attribute (see
http://www.iana.org/assignments/enterprise-numbers).
RFC 2865 describes usage of the Vendor-Type attribute.
If you specify Vendor-Id and Vendor-Type on the RADIUS
server and on the Nortel SNAS, the Nortel SNAS will retrieve
vendor-specific values for the associated attribute. If you set the
Vendor-Id and Vendor-Type attributes to 0, the RADIUS server
sends standard attribute values.
bLDAP servers:
server IP address
port number used for the service
configured accounts and users so that you can specify
appropriate search entries and group and user attributes
--End--
Nortel Secure Network Access Switch
Using the Command Line Interface
NN47230-100 03.01 Standard
28 July 2008
Copyright © 2007,2008 NortelNetworks
.