
2-20 Installing and Configuring the RADIUS Server on a Network-Based
LX Series Configuration Guide
The daemon uses a list of clients and associated secrets that it
shares with these clients. The per-client secret is used to
encrypt and validate communications between the RADIUS
server and the client. The file used to keep the client list and
secrets is the “clients” file.
Another file used by the daemon to store the users that are
authenticated is the “users” file. The “users” file contains the
RADIUS attributes associated with a specific user. As a
minimum, this file must contain the user’s username, password
(depending on the RADIUS server used), and Service-type.
To configure the RADIUS server, see your RADIUS host
documentation. MRV recommends that you use the Merit
RADIUS server implementation. Information for the Merit
RADIUS server can be found at http://www.merit.edu. See
the GOPHER SERVER and the MERIT Network Information
Center for new releases.
X To specify the RADIUS server settings
1. Check the primary RADIUS Server host to ensure that the
RADIUS server client database has been configured.
2. Access the AAA Command Mode.
3. Use the radius primary authentication server
address command to specify the IP address of the
RADIUS primary authentication server.
Example AAA:0 >>radius primary authentication server
address 146.32.87.93
4. Use the radius primary authentication server
secret command to specify the secret that will be
shared between LX unit and the RADIUS primary
authentication server. You can use uppercase and
lowercase in combination, as long as the case matches
that of the secret on the other side.
Example AAA:0 >>radius primary authentication server
secret BfrureG
See “Command
Mode Descriptions
on page 1-5 for
information about
accessing
Asynchronous
Command Mode.
Kommentare zu diesen Handbüchern