
Chapter 11: Access Management and Security
Configuring RADIUS
phn-3965_006v002
Page 11-33
radio-ro = none,
radio-wo = none,
tdm-ro = none,
tdm-wo = none,
eth-ro = none,
eth-wo = none,
sync-ro = none,
sync-wo = none,
access_channel = u3accesschannel,
fall-through = yes
2
Save the changes in the
/etc/raddb/users
file.
Step 2
–
Defining the Permitted Access Channels
The
access_channel
of each user we configured in the
/etc/raddb/users
file, defines the channels through
which that user is allowed to access the unit.
This is done by summing the values corresponding to the allowed channels, where the values are:
### none 0
### serial 1
### telnet 2
### ssh 4
### web 8
### nms 16
### snmp 32
### snmpV3 64
For example:
•
The value
127
denotes permission to access the device from all channels:
SSH + Web + NMS + SNMP +SNMPv3
•
The value
24
indicates permission to access the device only from the Web + NMS channels.
To define each user’s access channels:
1
In the
usr/share/freeradius/dictionary.cambium
file, configure the values of the access channels
according to the following example:
### access channel for u1 user:ssh+web+nms+snmp+snmpV4
VALUE ACCESS_CHANNEL u1accesschannel 127
2
Save the changes to the
usr/share/freeradius/dictionary.cambium
file.
Step 3
–
Specifying the RADIUS client
This step describes how to define a device as a RADIUS client. The RADIUS server accepts attempts to connect to a
device only if that is device is defined as a RADIUS client.
To define a device as a RADIUS client:
Summary of Contents for PTP 820 Series
Page 1: ...User Guide ...
Page 49: ...Chapter 1 Introduction Configuration Tips phn 3965_006v002 Page 1 3 ...
Page 162: ...Chapter 3 Configuration Guide System Configurations phn 3965_006v002 Page 3 4 ...
Page 294: ...Chapter 4 Unit Management Upgrading the Software phn 3965_006v002 Page 4 19 5 Select FTP ...
Page 713: ...Chapter 14 Getting Started CLI Configuring the Activation Key CLI phn 3965_006v002 Page 14 18 ...
Page 731: ...Chapter 14 Getting Started CLI Operating in FIPS Mode CLI phn 3965_006v002 Page 14 36 ...