Configuring RADIUS Attributes
408
Nokia IP60 Security Appliance User Guide
In this field…
Do this…
Remote Desktop
Access
Select this option to allow all users authenticated by the RADIUS
server to log on to the my.firewall portal, view the
Active Computers
page, and remotely access computers' desktops, using the Remote
Desktop feature.
Note:
Authenticated users can perform these actions, even if their level
of administrative access is "No Access".
For information on Remote Desktop, see
Using Remote Desktop
on
page 411.
Configuring RADIUS Attributes
To define a timeout for Secure HotSpot sessions
Set the Session-Timeout Attribute (attribute 27) to the number of seconds after which users
should be automatically logged off from the hotspot.
To assign permissions to specific RADIUS-authenticated users
1.
Create a remote access policy as follows:
a)
Assign the policy’s VSA (attribute 26) the SofaWare vendor code (6983).
b)
For each permission you want to grant, configure the relevant attribute of the VSA with the
desired value, as described in the following table.
For example, to assign the user VPN access permissions, set attribute number 2 to ―true‖.
2.
Assign the policy to the desired user or user group.
For detailed instructions and examples, refer to the "Configuring the RADIUS Vendor-Specific Attribute"
white paper.
Summary of Contents for IP60 - Security Appliance
Page 1: ...Part No N450000643 Rev 001 Published February 2008 Nokia IP60 Security Appliance User Guide ...
Page 4: ...4 Nokia IP60 Security Appliance User Guide ...
Page 10: ......
Page 12: ......
Page 38: ......
Page 58: ......
Page 108: ......
Page 268: ......
Page 482: ......