
Chapter 25 AAA
GS2220 Series User’s Guide
255
25.6.2 Supported RADIUS Attributes
Remote Authentication Dial-In User Service (RADIUS) attributes are data used to define specific
authentication elements in a user profile, which is stored on the RADIUS server. This section lists the
RADIUS attributes supported by the Switch.
Refer to RFC 2865 for more information about RADIUS attributes used for authentication.
This section lists the attributes used by authentication functions on the Switch. In cases where the
attribute has a specific format associated with it, the format is specified.
25.6.3 Attributes Used for Authentication
The following sections list the attributes sent from the Switch to the RADIUS server when performing
authentication.
25.6.3.1 Attributes Used for Authenticating Privilege Access
User-Name
– The format of the User-Name attribute is
$enab
#
$
, where # is the privilege level (1 – 14).
User-Password
NAS-Identifier
NAS-IP-Address
25.6.3.2 Attributes Used to Login Users
User-Name
User-Password
NAS-Identifier
NAS-IP-Address
25.6.3.3 Attributes Used by the IEEE 802.1x Authentication
User-Name
NAS-Identifier
NAS-IP-Address
NAS-Port
NAS-Port-Type
Table 114 Supported Tunnel Protocol Attribute
FUNCTION
ATTRIBUTE
VLAN Assignment
Tunnel-Type =
VLAN(13)
Tunnel-Medium-Type =
802(6)
Tunnel-Private-Group-ID =
VLAN ID
Note: You must also create a VLAN with the specified VID on the Switch.
Note: The bolded values in this table are fixed values as defined in RFC 3580.
Summary of Contents for GS2220-10
Page 23: ...23 PART I User s Guide...
Page 49: ...49 PART II Technical Reference...