![Allen-Bradley 1783-WAPAK9 User Manual Download Page 416](http://html1.mh-extra.com/html/allen-bradley/1783-wapak9/1783-wapak9_user-manual_2900827416.webp)
416
Rockwell Automation Publication 1783-UM006A-EN-P - May 2014
Chapter 14
Configuring RADIUS and Servers
Defining AAA Server Groups
You can configure the access point to use AAA server groups to group existing
server hosts for authentication. You select a subset of the configured server hosts
and use them for a particular service. The server group is used with a global
server-host list. The list contains the IP addresses of the selected server hosts.
Server groups also can include multiple host entries for the same server if each
entry has a unique identifier (the combination of the IP address and UDP port
number), allowing different ports to be individually defined as RADIUS hosts
providing a specific AAA service. If you configure two different host entries on
the same RADIUS server for the same service (such as accounting), the second
configured host entry acts as a fail-over backup to the first one.
You use the server group server configuration command to associate a particular
server with a defined group server. You can either identify the server by its IP
address or identify multiple host instances or entries by using the optional
authport and acct-port keywords.
Beginning in privileged EXEC mode, follow these steps to define the AAA server
group and associate a particular RADIUS server with it:
1.
Enter global configuration mode.
configure terminal
2.
Enable AAA.
aaa new-model
3.
Specify the IP address or host name of the remote RADIUS server host.
•
(Optional)
For auth-port
port-number
, specify the UDP
destination port for authentication requests.
•
(Optional) For
acct-port
port-number
, specify the UDP
destination port for accounting requests.
•
(Optional) For
timeout
seconds
, specify the time interval that the
access point waits for the RADIUS server to reply before
retransmitting.
The range is 1…1000. This setting overrides the
radius-server
timeout
global configuration command setting. If no timeout is set
with the
radius-server host
command, the setting of the
radius-server timeout
command is used.
•
(Optional) For
retransmit
retries
, specify the number of times a
RADIUS request is resent to a server if that server is not responding or
responding slowly.
The range is 1…1000. If no retransmit value is set with the
radius-
server hostp
command, the setting of the
radius-server
retransmit
global configuration command is used.
Summary of Contents for 1783-WAPAK9
Page 456: ...456 Rockwell Automation Publication 1783 UM006A EN P May 2014 Chapter 15 Configuring VLANs...
Page 476: ...476 Rockwell Automation Publication 1783 UM006A EN P May 2014 Chapter 16 Configuring QoS Notes...
Page 482: ...482 Rockwell Automation Publication 1783 UM006A EN P May 2014 Chapter 17 Configuring Filters...
Page 489: ...Rockwell Automation Publication 1783 UM006A EN P May 2014 489 Configuring Filters Chapter 17...
Page 572: ...572 Rockwell Automation Publication 1783 UM006A EN P May 2014 Chapter 21 Troubleshooting Notes...
Page 600: ...600 Rockwell Automation Publication 1783 UM006A EN P May 2014 Glossary Notes...
Page 610: ...610 Rockwell Automation Publication 1783 UM006A EN P May 2014 Index Notes...
Page 611: ......