
11: User Authentication
SLB™ Branch Office Manager User Guide
205
5. Click the
Apply
button.
Note:
You must reboot the unit before your changes will take effect.
RADIUS Commands
Go to
to view CLI commands which correspond to the web
page entries described above.
User Attributes & Permissions from LDAP Schema or RADIUS VSA
Remote user attributes (group/permissions and port access) can be obtained from an Active
Directory server's schema via the user attribute 'secureLinxSLCPerms', or from a RADIUS server's
Vendor-Specific Attribute (see below). This attribute is a set of parameter-value pairs. Each
parameter and value is separated by a space, and a space separates each parameter-value pair.
Whitespace is not supported in the value strings. The parameters that are supported are:
rights
- User rights. The value string is a comma-separated list of two letter user permissions.
Example: "nt,wb,ra".
data
- Data port access. The value string specifies the list of ports the user has 'direct' access
to. Example: "2,4-18,U,L".
listen
- Listen port access. The value string specifies the list of ports the user has 'listen'
access to.
clear
- Clear port access. The value string specifies the list of port buffers the user has the
right to clear.
outlet
- Outlet port access. The value string is the list of SLB outlets the user has rights for.
group
- User group. Valid values for the value string are "default", "power", and "admin".
escseq
- Escape sequence. The value string specifies the user's escape sequence. Use "\x"
to specify non-printable characters. For example, "\x1bA" specifies the sequence "ESC-A".
brkseq
- Break sequence. The value string specifies the user's break sequence.
menu
- Custom user menu. The value string specifies the user's custom user menu.
display
- Display custom user menu when a user logs into the CLI. Valid values for the value
string are "yes" and "no".
dbnumber
- Dial-back number. The value string specifies the user's dial-back number for
modem dial-back connections.
allowdb
- Allow a user to have dial-back access. Valid values for the value string are "yes"
and "no".
RADIUS servers will need to be configured to support the Lantronix Vendor-Specific Attribute. For
example, on a FreeRADIUS server, the dictionary will need be updated with the Lantronix
definition by including the contents below in a file named
dictionary.lantronix
, and including it in the
RADIUS server dictionary definitions by adding the appropriate
$INCLUDE
directive to the main
dictionary file.
# dictionary.lantronix
#
# Lantronix SLB Branch Office Manager
# Provides SLB-specific user attributes
#
VENDOR Lantronix 244
Summary of Contents for 100-120 VAC SLB
Page 114: ...8 Device Ports SLB Branch Office Manager User Guide 114 Figure 8 4 Device Ports Settings ...
Page 131: ...8 Device Ports SLB Branch Office Manager User Guide 131 Figure 8 10 Devices Power Outlets ...
Page 174: ...9 USB Port SLB Branch Office Manager User Guide 174 Figure 9 3 Devices USB Modem ...