Configuring AAA for network users 557
Nortel WLAN—Security Switch 2300 Series Configuration Guide

Configuring 802.1X Acceleration

You can configure the WSS to offload all EAP processing from server groups. In this case, the RADIUS server is not
required to communicate using the EAP protocols.
For PEAP-MS-CHAP-V2 offload, you define a complete user profile in the local WSS database and only a username
and password on a RADIUS server.
For example, the following command authenticates all wireless users who request SSID marshes at example.com by
offloading PEAP processing onto the WSS, while still performing MS-CHAP-V2 authentication via the server group
shorebirds:
WSS# set authentication dot1x ssid marshes *@example.com peap-mschapv2 shorebirds
To offload both PEAP and MS-CHAP-V2 processing onto the WSS, use the following command:
WSS# set authentication dot1x ssid marshes *@example.com peap-mschapv2 local