DRA-2 UNIVERSAL COMMUNICATION NODE
101/158
USER GUIDE - Rev.5 (January 2018)
The general configuration parameters are the following:
•
Server IP 1.
This establishes the IP address of the primary server.
•
Server IP 2.
This establishes the IP address of the secondary server.
•
Encrypted.
This permits user to select whether the equipment communication with
the servers must be made in the ciphered mode or not.
•
Secret Shared Key.
This establishes the code to be used for ciphering the
communication when the
encrypted
option is active.
•
Guest Privilege Level.
This establishes the privilege level (0 to 15) of the guest
profile (
guest
). This level must be the same that the one established in the
server.
•
Admin Privilige Level.
This establishes the privilege level (0 to 15) of the
administrator profile (
admin
). This level must be the same that the one established
in the server.
The parameters associated with each access option (
console
,
web access, telnet
and
SSH
) are the following:
•
Authentication method.
This establishes whether the user validation must be
made locally or by consulting the configured tacacsplus servers.
•
Fallback to local access.
When this option is enabled, if there is no accessibility
to the configured servers, users are permitted to validate themselves
with local user names. If the option is disabled, and the servers are not
accessible, users will not be granted access. Access through the console has this
option permanently enabled, for which reason it is not configurable.
5.18
SECURITY CONFIGURATION
This menu allows traffic restrictions to be imposed, depending on the MAC addresses of
the clients. The equipment admits two modes for verifying the admitted client MAC
addresses: maclist or 802.1x.
When operating with lists, maclist, the equipment will only send traffic if the MAC address is
included in the authorized address list. Activation of the restriction and the list is configured
separately for each port.