You can add RADIUS servers that you want to use for authorizing and authenticating administrators.
-
Go to
.
-
Select the
AAA tab.
-
Click
Create.
The
Create Administrator RADIUS Server page appears.
Figure 124
Creating an Administrator RADIUS Server
-
Configure the following:
- Name: Type a name for the RADIUS server.
- Type: Select the type of RADIUS server that you are using. Options include:
- RADIUS: Click this option to use a Remote Authentication Dial-In User Service (RADIUS) server on the network for authenticating controller administrators.
- TACACS+: Click this option to use a Terminal Access Controller Access-Control System Plus (TACACS+) server on the network for authentication controller administrators.
- Realm: Type the realm (or realms) to which the RADIUS server belongs. If the RADIUS server belongs to multiple realms, use a comma (,) to separate the realm names.
- Backup RADIUS: Select the Enable Secondary Server to back up the RADIUS server configuration.
- Primary Server: Type the IP address, port, shared secret for the primary server that needs to be backed up.
- Secondary Server: Type the IP address, port, shared secret for the secondary server to which the back must be done.
- Failover Policy at NAS:'
- Request Timeout: Type the timeout period (in seconds) after which an expected RADIUS response message is considered to have failed.
- Max Number of Retries: Type the number of failed connection attempts after which the controller will fail over to the backup RADIUS server.
- Reconnect Primary: Type the number of minutes after which the controller will attempt to reconnect to the primary RADIUS server after failover to the backup server.
- IP Address: Type the IP address of the RADIUS server.
- Port: Type the UDP port that the RADIUS server is using. The default port is 1812.
- Shared Secret: Type the shared secret.
- Confirm Secret: Retype the same secret in.
- Click
OK.
You have completed adding a RADIUS server for authenticating administrators.
NOTE
You can also edit, clone and delete the server by selecting the options
Configure,
Clone and
Delete respectively, from the Administrator tab.