
Industrial Managed
Ethernet Switch
User Manual
錯誤
!
使用
[
常用
]
索
引標籤將
Heading
1,Product Manual
套用到您想要在此處
顯示的文字。
Page
29
of
191
Shared Key
The key used to authenticate with the
server. Max 15 characters.
12345678
Confirmed Shared Key
Re-type the shared key. Max 15 characters
.
NULL
Authentication Type
Authentication mechanism. For RADIUS:
MD5. For : ASCII, PAP, CHAP,
MSCHAP.
RADIUS is MD5
is ASCII
Server Timeout
(
1~255
sec
)
The time out period of waiting for a
response from the authentication server.
This will affect the time that the next login
prompt shows up in case that the server is
not available
.
5
When configuring RADIUS as the authentication server, the system administrator of thr RADIUS server must also
make sure that the RADIUS’s service-type attriute of each new user matches that particular user. For example, if a
user has an administrative right that user should have read/write priviledge, this user should be set Service-Type
attribute on RADIUS server
as “Administrative-User”. On the other hand, if a user has only normal priviledge that
is only read permission, this user should be set Service-
Type attribute on RADIUS server as “NAS-Prompt-User”.
Note that NAS is refered to Network Access Server or the EH75XX Managed Switch in this case. NAS is a client of
RADIUS
server. Depicts an example of a user called “admin1” with Cleartext-Password attribute of “default1” and
Service-
Type attribute of “Administrative-User”.
Figure 2.22 Example of new user account setting on RADIUS server
*
NOTE:
RADIUS (Remote Authentication Dial in User Service):
RADIUS is an access server that uses authentication, authorization, and accounting (AAA) protocolfor
authentication and authorization. It is a distributed security system that secures remote access to networks and
network services against unauthorized access. The RADIUS specification is described in
, which
(Terminal Access Controller Access-Control System Plus):
is a security application that provides centralized validation of users attempting to gain access to a router
or network access server. The specification is described in
Table 2.4 Comparison of Authentication Server Settings between RADIUS and
RADIUS
TACACS
+
Transport Protocol
UDP
TCP
Authentication
and Authorization
Separates AAA
Combines authentication and
authorization
Multiprotocol
Support
No
Yes, support AppleTalk Remote
Access (ARA) and NetBIOS
protocol
Confidentiality
Only passwordis encrypted
Entire packet is encrypted