5-18
F35 MULTIPLE FEEDER PROTECTION SYSTEM – INSTRUCTION MANUAL
PRODUCT SETUP
CHAPTER 5: SETTINGS
5
Table 5-3: RADIUS server settings
Table 5-4: General security settings
Setting name
Description
Minimum
Maximum
Default
Units Minimum
permission
Primary RADIUS IP
Address
IP address of the main RADIUS server.
Default value indicates no Primary
RADIUS server is configured, and hence
RADIUS is disabled.
Restart the relay for any change to take
effect.
0.0.0.0
223.255.255.254 0.0.0.0
-
Administrator
Primary
Authentication Port
RADIUS authentication port
1
65535
1812
-
Administrator
Primary Accounting
Port
RADIUS accounting port
1
65535
1813
-
Administrator
Vendor ID
An identifier that specifies RADIUS
vendor-specific attributes used with the
protocol
Value that
represents
General
Electric
Administrator
RADIUS
Authentication
Method
Authentication method used by RADIUS
server. Can use EAP-TTLS, PEAP-GTC, or
PAP. Selecting the PEAP-GTC option
disables RADIUS authentication.
EAP-TTLS
PAP
EAP-TTLS
-
Administrator
RADIUS
Authentication
(Shared) Secret
Shared secret used in authentication. It
displays as asterisks. This setting must
meet the CyberSentry password
requirements.
See the
Password
Requirements
section earlier
in this chapter
See the following
password section
for requirements
N/A
-
Administrator
Timeout
Timeout in seconds between re-
transmission requests
0
9999
10
sec
Administrator
Retries
Number of retries before giving up
0
9999
3
-
Administrator
Confirm RADIUS
Authentication
(Shared) Secret
Confirmation of the shared secret. The
entry displays as asterisks.
See the
Password
Requirements
section
245 characters
N/A
-
Administrator
Setting name
Description
Minimum
Maximum Default
Units Minimum
permission
Session Lockout
Number of failed authentications before the
device blocks subsequent authentication
attempts for the lockout period
0 (lockout
disabled)
99
3
-
Administrator
Session Lockout
Period
The period in minutes that a user is prevented
from logging in after being locked out
0 (no period)
9999
3
min
Administrator
Syslog Server IP
Address
The IP address of the target Syslog server to
which all security events are transmitted
0.0.0.0
223.255.
255.254
0.0.0.0
-
Administrator
Syslog Server Port
Number
The UDP port number of the target syslog
server to which all security events are
transmitted
1
65535
514
-
Administrator
Device
Authentication
When enabled, local Device authentication
with roles is allowed. When disabled, the UR
only authenticates to the AAA server (RADIUS).
NOTE:
Administrator and Supervisor (if still
enabled) remain active even after Device
authentication is disabled. The only permission
for local Administrator is to re-enable Device
authentication when Device authentication is
disabled. To re-enable Device authentication,
the Supervisor unlocks the device for setting
changes, and then the Administrator can re-
enable Device authentication.
Disabled
Enabled
Enabled
-
Administrator