ETERNUS Web GUI User’s Guide (Settings)
Copyright 2015 FUJITSU LIMITED
P2X0-1270-13ENZ0
1070
Appendix G
Using RADIUS Authentication
This appendix describes supplementary notes when using RADIUS Authentication.
G.1
Using RADIUS Authentication to Access the ETERNUS DX
•
RADIUS Authentication is used to authenticate logging in to the ETERNUS DX with ETERNUS Web GUI or
ETERNUS CLI.
•
Up to two RADIUS servers can be connected to an ETERNUS DX.
•
To use RADIUS Authentication, the user account information (user ID, password, and role) that is allowed
to access ETERNUS DX in the RADIUS server must be pre-registered.
•
There are two types of authentication methods: CHAP and PAP.
•
User roles are specified in the Vendor Specific Attribute (VSA) of the Access-Accept response from the
server. The following table shows the syntax of the VSA based account role on the RADIUS server.
Syntax of the Vendor Specific Attribute (VSA) based account role
*1: The server-side role names are case sensitive and must be set correctly.
[Example] RoleName0
Item
Size
(octets)
Value
Description
Type
1
26
Attribute number for the Vendor Specific Attribute
Length
1
7 or more
Attribute size (calculated by server)
Vendor-Id
4
211
Fujitsu Limited (SMI Private Enterprise Code)
Vendor type
1
1
Eternus-Auth-Role
Vendor length
1
2 or more
Attribute size described after the Vendor type
(calculated by server)
Attribute-Specific
1 or more
ASCII characters
List of one or more role names assignable to
successfully authenticated users (*1)
Summary of Contents for Eternus DX200F
Page 2: ...This page is intentionally left blank ...
Page 1082: ......