Configuring Groups on LDAP, NTLM, RADIUS, and TACACS+ Authentication Servers
516
AlterPath OnSite Administrator’s and User’s Guide
Configuring a RADIUS Authentication Server on
the Command Line
The following list defines the values that to define when configuring a
RADIUS authentication server on the OnSite.
• auth1 server[:port] secret [timeout] [retries]
• acct1 server[:port] secret [timeout] [retries]
where:
• auth1: The first RADIUS authentication server.
• acct1: The first RADIUS accounting server.
• server: The RADIUS server IP address.
• port: Optional. The default port name is “radius” and is looked up
through /etc/services.
• secret: The shared password required for communication between the
OnSite and the RADIUS server.
• timeout: How long the authentication server should wait before
sending a success or failure response. The default is 3 seconds.
• retries: The number of times the RADIUS server is tried before the
second defined RADIUS server is contacted. The default is 2.
T To Configure a RADIUS Authentication
Server on the Command Line
1. On the OnSite, open the /etc/raddb/server file for editing.
2. Make an entry for the RADIUS server (auth1), an accounting server
(acct1), and if desired, make an entry for a second RADIUS
authentication server (auth2) and for a second accounting server
(acct2), by performing the following steps for each server.
a. Enter the IP address for the server.
b. Optional: define an alternate port.
c. Enter the secret (shared password.
d. Optional: enter a value to redefine the timeout.
e. Optional: enter a value to redefine the number of retries.
Comentários a estes Manuais