45
CHAPTER 4: Advanced Operations
4.4.7 RADIUS
From the Admin menu in the Home screen, click on
RADIUS
. The screen shown
in Figure 4-13 appears.
Figure 4-13. RADIUS Configuration screen.
The RADIUS server requires the IP address, the UDP port number (1812, default
or 1645) and the shared secret. The shared secret is used to encrypt communi-
cations and corresponds to a shared password for the RADIUS server and the
client machine. Two additional servers may be defined for backup purposes. Each
server will be tried in order, using the indicated number of retries and timeout
period, which are configurable on the same page. Remember to enable RADIUS
after configuring it. While RADIUS authentication is enabled, the locally defined
IP module accounts on the ServSwitch will not be used, except for the SSH login.
However, if a username of the form “name.local” is given at the RADIUS prompt,
the system will use “name”, check the password locally, and skip RADIUS
authentication. Delete all local accounts to avoid this behavior. When connecting
via VNC, a login screen is generated that asks for a RADIUS username and
password.
Table 4-7 describes the options in Figure 4-13.