
xStack
®
DES-3528/DES-3552 Series Layer 2 Stackable Fast Ethernet Managed Switch User Manual
191
RADIUS Attributes Assignment
The RADIUS Attributes Assignment is used in the following modules: 802.1X (Port-based and Host-based), MAC-
based Access Control, Web-based Access Control, and JWAC (Japanese Web-based Access Control).
1. To assign Ingress/Egress bandwidth by RADIUS server, the proper parameters should be configured on the
RADIUS Server. The tables below show the parameters for bandwidth and default priority:
The parameters of the Vendor-Specific attributes are:
Vendor-Specific attribute Description Value Usage
Vendor-ID
Defines the vendor
171 (DLINK)
Required
Vendor-Type
The definition of this
attribute
2 (for ingress bandwidth)
3 (for egress bandwidth)
Required
Attribute-Specific field
Used to assign the
bandwidth of the port
Unit (Kbits)
Required
If the user has configured the bandwidth attribute of the RADIUS server (for example, ingress bandwidth 1000Kbps),
and the 802.1X, MAC-based Access Control, Web-based Access Control, or JWAC authentication is successful, the
device will assign the bandwidth (according to the RADIUS server) to the port. However, if the user does not configure
the bandwidth attribute and authenticates successfully, the device will not assign bandwidth to the port. If the
bandwidth attribute is configured on the RADIUS with a value of “0” or more than the effective bandwidth (100Mbps
on an Ethernet port or 1Gbps on a Gigabit port) of the port will be set to no_limited.
2. To assign 802.1p default priority by RADIUS server, proper parameters should be configured on the RADIUS
Server. Below are the parameters of a user account
The parameters of the Vendor-Specific attributes are:
Vendor-Specific attribute Description Value Usage
Vendor-ID
Defines the vendor
171 (DLINK)
Required
Vendor-Type
The definition of this
attribute
4
Required
Attribute-Specific field
Used to assign the
802.1p default priority
of the port
0-7
Required
If the user has configured the 802.1p priority attribute of the RADIUS server (for example, priority 7) and the 802.1X,
MAC-based Access Control, Web-based Access Control, or JWAC authentication is successful, the device will assign
the 802.1p default priority (according to the RADIUS server) to the port. However, if the user does not configure the
priority attribute and authenticates successfully, the device will not assign a priority to this port. If the priority attribute
configured on the RADIUS is a value out of range (>7), it will not be set to the device.
3. To assign VLAN by a RADIUS server, the proper parameters should be configured on the RADIUS Server.
To use VLAN assignment, RFC3580 defines the following tunnel attributes in RADIUS packets.
The tables below show the parameters for VLAN:
RADIUS Tunnel attribute Description Value Usage
Tunnel-Type
This attribute indicates
the tunneling
protocol(s) to be used
(in the case of a tunnel
initiator) or the the
tunneling protocol in
use (in the case of a
tunnel terminator).
13 (VLAN)
Required
Содержание DES-3528 - xStack Switch - Stackable
Страница 19: ...xStack DES 3528 DES 3552 Series Layer 2 Stackable Fast Ethernet Managed Switch User Manual 18...
Страница 214: ...xStack DES 3528 DES 3552 Series Layer 2 Stackable Fast Ethernet Managed Switch User Manual 213...
Страница 306: ...xStack DES 3528 DES 3552 Series Layer 2 Stackable Fast Ethernet Managed Switch User Manual 305...