The RADIUS server automatically receives the above information when you load the
Juniper Networks dictionary file onto it. To make new data entries, you must manually
enter a value in the form indicated by the attribute type.
Example: Configuring a Radius Auth Server
In the following example, you define an auth server object for a RADIUS server. You specify
its user account types as auth, L2TP, and XAuth. You name the RADIUS server “ radius1”
and accept the ID number that the security device automatically assigns it. You enter its
IP address, which is 10.20.1.100; and change its port number from the default port number
(1645) to 4500. You define its shared secret as “ A56htYY97kl” . You change the
authentication timeout value from the default (10 minutes) to 30 minutes and the RADIUS
retry timeout from 3 seconds to 4 seconds. You also assign its two backup servers the
IP addresses 10.20.1.110 and 10.20.1.120.
In addition, you load the Juniper Networks dictionary file on the RADIUS server so that it
can support queries for the following vendor-specific attributes (VSAs): user groups,
administrator privileges, remote L2TP and XAuth settings.
1.
In the main navigation tree, select
Object Manager > Authentication Servers
and
click the Add icon. Enter a name, color, and comment for the authentication server.
2.
Configure the RADIUS servers:
•
For Main Server, enter the IP
10.20.1.100
•
For Primary Backup Server, enter IP
10.20.1.110
•
For Secondary Backup Server, enter IP
10.20.1.120
3.
For timeout, enter
30
.
4.
Select the following:
•
For Firewall Auth Users
•
For XAuth Users
•
For L2TP Users
5.
For Server Type, select
RADIUS
.
6.
Configure the RADIUS server properties:
•
For server port, enter
4500
(default is 1645)
•
For secret, enter
A56hYY97kl
•
For retry timeout, select
4
.
7.
Click
OK
to save the RADIUS authentication server object.
8.
Load the Juniper Networks dictionary file on the RADIUS server.
Configuring a SecurID Authentication Server
Security devices also support the RSA SecurID system. The device acts as a SecurID
client, forwarding authentication requests to the external server for approval and relaying
Copyright © 2010, Juniper Networks, Inc.
396
Network and Security Manager Administration Guide
Summary of Contents for NETWORK AND SECURITY MANAGER 2010.3
Page 6: ...Copyright 2010 Juniper Networks Inc vi...
Page 36: ...Copyright 2010 Juniper Networks Inc xxxvi Network and Security Manager Administration Guide...
Page 52: ...Copyright 2010 Juniper Networks Inc 2 Network and Security Manager Administration Guide...
Page 90: ...Copyright 2010 Juniper Networks Inc 40 Network and Security Manager Administration Guide...
Page 144: ...Copyright 2010 Juniper Networks Inc 94 Network and Security Manager Administration Guide...
Page 146: ...Copyright 2010 Juniper Networks Inc 96 Network and Security Manager Administration Guide...
Page 234: ...Copyright 2010 Juniper Networks Inc 184 Network and Security Manager Administration Guide...
Page 310: ...Copyright 2010 Juniper Networks Inc 260 Network and Security Manager Administration Guide...
Page 364: ...Copyright 2010 Juniper Networks Inc 314 Network and Security Manager Administration Guide...
Page 366: ...Copyright 2010 Juniper Networks Inc 316 Network and Security Manager Administration Guide...
Page 478: ...Copyright 2010 Juniper Networks Inc 428 Network and Security Manager Administration Guide...
Page 576: ...Copyright 2010 Juniper Networks Inc 526 Network and Security Manager Administration Guide...
Page 580: ...Copyright 2010 Juniper Networks Inc 530 Network and Security Manager Administration Guide...
Page 592: ...Copyright 2010 Juniper Networks Inc 542 Network and Security Manager Administration Guide...
Page 684: ...Copyright 2010 Juniper Networks Inc 634 Network and Security Manager Administration Guide...
Page 690: ...Copyright 2010 Juniper Networks Inc 640 Network and Security Manager Administration Guide...
Page 696: ...Copyright 2010 Juniper Networks Inc 646 Network and Security Manager Administration Guide...
Page 698: ...Copyright 2010 Juniper Networks Inc 648 Network and Security Manager Administration Guide...
Page 748: ...Copyright 2010 Juniper Networks Inc 698 Network and Security Manager Administration Guide...
Page 778: ...Copyright 2010 Juniper Networks Inc 728 Network and Security Manager Administration Guide...
Page 870: ...Copyright 2010 Juniper Networks Inc 820 Network and Security Manager Administration Guide...
Page 872: ...Copyright 2010 Juniper Networks Inc 822 Network and Security Manager Administration Guide...
Page 898: ...Copyright 2010 Juniper Networks Inc 848 Network and Security Manager Administration Guide...
Page 908: ...Copyright 2010 Juniper Networks Inc 858 Network and Security Manager Administration Guide...
Page 910: ...Copyright 2010 Juniper Networks Inc 860 Network and Security Manager Administration Guide...
Page 995: ...PART 6 Index Index on page 947 945 Copyright 2010 Juniper Networks Inc...
Page 996: ...Copyright 2010 Juniper Networks Inc 946 Network and Security Manager Administration Guide...