F35 MULTIPLE FEEDER PROTECTION SYSTEM – INSTRUCTION MANUAL
B-1
F35 Multiple Feeder Protection System
Appendix B: RADIUS server configuration
RADIUS server configuration
This appendix outlines how to set up a RADIUS server for user authentication.
B.1 RADIUS server configuration
The following procedure is an example of how to set up a simple RADIUS server. You install the RADIUS server software on
a separate computer. In this example, we use FreeRADIUS third-party software.
1.
Download and install FreeRADIUS from
as the RADIUS server. This is a Windows 32-bit installation
that is known to work. If you try another third-party tool and it does not work, use the FreeRADIUS software from
freeradius.net.
2.
Open the radius.conf file in the <Path_to_Radius>\etc\raddb folder, locate the "bind_address" field, and enter your
RADIUS server IP address. An example is
bind_address = 10.14.61.109
Text editor software that supports direct editing and saving of UNIX text encodings and line breaks, such as EditPad
Lite, is needed for this editing.
3.
In the users.conf file in the <Path_to_Radius>\etc\raddb folder, add the following text to configure a user "Tester" with
an Administrator role.
Tester User-Password == "testpw"
GE-PDC-USER-Role = Administrator,
4.
In the clients.conf file in the <Path_to_Radius>\etc\raddb folder, add the following text to define the UR as a RADIUS
client, where the client IP address is 10.0.0.2, the subnet mask is 255.255.255.0, the shared secret specified here is also
configured on the UR device for successful authentication, and the shortname is a short, optional alias that can be
used in place of the IP address.
client 10.0.0.2/24 {
secret = testing123
shortname = private-network-1
}
5.
In the <Path_to_Radius>\etc\raddb folder, create a file called dictionary.ge and add the following content.
# ##########################################################
# GE VSAs
############################################################
VENDOR GE 2910
# Management authorization