Chapter 25 AAA

Table 76 Supported VSAs

FUNCTION

ATTRIBUTE

 

 

Egress Bandwidth

Vendor-Id = 890

Assignment

Vendor-Type = 2

 

Vendor-data = egress rate (Kbps in decimal format)

Privilege

Vendor-ID = 890

Assignment

Vendor-Type = 3

 

Vendor-Data = "shell:priv-lvl=N"

 

or

 

Vendor-ID = 9 (CISCO)

 

Vendor-Type = 1 (CISCO-AVPAIR)

 

Vendor-Data = "shell:priv-lvl=N"

 

where N is a privilege level (from 0 to 14).

 

Note: If you set the privilege level of a login account differently

 

on the RADIUS server(s) and the Switch, the user is

 

assigned a privilege level from the database (RADIUS or

 

local) the Switch uses first for user authentication.

 

 

25.2.4.1 Tunnel Protocol Attribute

You can configure tunnel protocol attributes on the RADIUS server (refer to your RADIUS server documentation) to assign a port on the Switch to a VLAN based on IEEE 802.1x authentication. The port VLAN settings are fixed and untagged. This will also set the port’s VID. The following table describes the values you need to configure. Note that the bolded values in the table are fixed values as defined in RFC 3580.

Table 77 Supported Tunnel Protocol Attribute

FUNCTION

ATTRIBUTE

VLAN Assignment

Tunnel-Type = VLAN(13)

 

Tunnel-Medium-Type = 802(6)

 

Tunnel-Private-Group-ID = VLAN ID

 

Note: You must also create a VLAN with the specified VID on

 

the Switch.

 

 

25.3 Supported RADIUS Attributes

Remote Authentication Dial-In User Service (RADIUS) attributes are data used to define specific authentication, and accounting elements in a user profile, which is stored on the RADIUS server. This appendix lists the RADIUS attributes supported by the Switch.

MGS3700-12C User’s Guide

265

Page 265
Image 265
ZyXEL Communications metrogigabit switch manual Supported Radius Attributes, 265, Tunnel Protocol Attribute

metrogigabit switch specifications

ZyXEL Communications has long been a prominent player in the networking hardware industry, providing innovative solutions that cater to both business and consumer markets. Among their notable offerings is the Metrogigabit switch, a device designed to meet the high demands of modern networks.

The ZyXEL Metrogigabit switch is primarily aimed at service providers and large enterprises, recognizing the need for seamless connectivity in an increasingly digital world. This switch is engineered for scalability, enabling users to effortlessly expand their network as their operational needs grow. With support for high bandwidth, it is particularly suited for environments requiring extensive data traffic management, such as data centers and campus networks.

One of the standout features of the Metrogigabit switch is its high-density gigabit Ethernet ports, which provide a backbone for reliable data transmission. The switch typically supports multiple 10G SFP+ uplinks, ensuring fast and efficient connections to upstream devices. This capability allows users to configure their networks to handle large volumes of data quickly and without interruption.

In terms of technology, the Metrogigabit switch leverages advanced Layer 2 and Layer 3 functionalities. This includes features such as VLAN support for traffic segmentation, Quality of Service (QoS) for prioritizing mission-critical applications, and robust multicast management. These capabilities contribute to enhanced network efficiency and performance.

Another characteristic that sets the ZyXEL Metrogigabit switch apart is its built-in security features. The device is designed to protect network integrity through mechanisms like port security, access control lists, and advanced authentication protocols. This focus on security helps prepare businesses to counteract potential threats in a landscape where cyber attacks are increasingly sophisticated.

Moreover, the switch is equipped with a user-friendly management interface, which simplifies the process of monitoring and configuring network settings. This is complemented by support for SNMP and RMON, allowing network administrators to leverage tools for effective performance monitoring.

In summary, the ZyXEL Metrogigabit switch is an essential tool for organizations seeking robust performance, reliability, and security in their networking infrastructure. With its high-density ports, flexible configuration options, and comprehensive management features, it provides a strong foundation for building efficient and scalable networks. Whether for service providers or enterprises, this switch stands out as a reliable choice in the fast-evolving technological landscape.