DGS-1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide
731
Appendix C - RADIUS Attributes Assignment
The RADIUS Attributes Assignment on the DGS-1510 is used in the following modules: Console,
Telnet, SSH, Web, 802.1X, MAC-based Access Control, JWAC, and WAC.
The description that follows explains the following RADIUS Attributes Assignment types:
Privilege Level
Ingress/Egress Bandwidth
802.1p Default Priority
VLAN
ACL
To assign the
Privilege Level
by the RADIUS server, the proper parameters should be configured on
the RADIUS server. The table below shows the parameters for the bandwidth.
The parameters of the Vendor-Specific attributes are:
Vendor-Specific
Attribute
Description
Value
Usage
Vendor-ID
Defines the vendor.
171 (DLINK)
Required
Vendor-Type
Defines the attribute.
1
Required
Attribute-Specific Field
Used to assign the privilege
level of the user to operate
the switch.
Range (1-15)
Required
If the user has configured the privilege level attribute of the RADIUS server (for example, level 15)
and the Console, Telnet, SSH, and Web authentication is successful, the device will assign the
privilege level (according to the RADIUS server) to this access user. However, if the user does not
configure the privilege level attribute and authenticates successfully, the device will not assign any
privilege level to the access user. If the privilege level is configured less than the minimum supported
value or greater than the maximum supported value, the privilege level will be ignored.
To assign the
Ingress/Egress Bandwidth
by the RADIUS server, the proper parameters should be
configured on the RADIUS Server. The table below shows the parameters for bandwidth.
The parameters of the Vendor-Specific attributes are:
Vendor-Specific
Attribute
Description
Value
Usage
Vendor-ID
Defines the vendor.
171 (DLINK)
Required
Vendor-Type
Defines the attribute.
2 (for ingress bandwidth)
3 (for egress bandwidth)
Required
Attribute-Specific Field
Used to assign the
bandwidth of a port.
Unit (Kbits)
Required
If the user has configured the bandwidth attribute of the RADIUS server (for example, ingress
bandwidth 1000Kbps), and 802.1X, MAC-based Access Control, JWAC or WAC authentication is
successful, the device will assign the bandwidth (according to the RADIUS server) to the port.
However, if the user does not configure the bandwidth attribute and authenticates successfully, the
device will not assign any bandwidth to the port. If the bandwidth attribute is configured on the
RADIUS server with a value of “0”, the effective bandwidth will be set “no_limited”, and if the
Summary of Contents for DGS-510
Page 1: ...1 ...
Page 287: ...DGS 1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide 284 ...
Page 321: ...DGS 1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide 318 ...
Page 493: ...DGS 1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide 490 ...
Page 733: ...DGS 1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide 730 ...