158
| Authentication and User Management
Aruba Instant 6.5.0.0-4.3.0.0 | User Guide
To assign the RADIUS authentication server to a network profile, select the newly added server when
configuring security settings for a wireless or wired network profile.
You can also add an external RADIUS server by selecting the
New
option when configuring a WLAN or wired
profile. For more information, see
Configuring Security Settings for a WLAN SSID Profile on page 90
and
Configuring Security Settings for a Wired Profile on page 110
l
LDAP
—To configure an LDAP server, select the
LDAP
option and configure the attributes described in the
following table:
Parameter
Description
Name
Enter a name for the server.
IP address
Enter the IP address of the LDAP server.
Auth port
Enter the authorization port number of the LDAP server. The default port number is 389.
Admin-DN
Enter a distinguished name for the admin user with read/search privileges across all the entries in
the LDAP database (the user need not have write privileges, but the user must be able to search the
database, and read attributes of other users in the database).
Admin
password
Enter a password for administrator.
Base-DN
Enter a distinguished name for the node that contains the entire user database.
Filter
Specify the filter to apply when searching for a user in the LDAP database. The default filter string is
(objectclass=*)
.
Key
Attribute
Specify the attribute to use as a key while searching for the LDAP server. For Active Directory, the
value is
sAMAccountName
Timeout
Enter a value between 1 and 30 seconds. The default value is 5.
Retry count
Enter a value between 1 and 5. The default value is 3.
Dead Time
Specify a dead time for the authentication server in minutes within the range of 1–1440 minutes.
The default dead time interval is 5 minutes.
When two or more authentication servers are configured on the IAP and a server is unavailable, the
dead time configuration determines the duration for which the authentication server would be
available if the server is marked as unavailable.
Table 34:
LDAP Server Configuration Parameters
l
TACACS
—To configure TACACS server, select the
TACACS
option and configure the following parameters: