
Setting the RADIUS Configuration
Altitude
TM
4000 Series Access Point System Reference Guide
361
5
Set the following
Authentication
parameters to define server policy authorization settings.
6
Set the following
Session Resumption/Fast Reauthentication
settings to define how server policy
sessions are re-established once terminated and require cached data to resume:
LDAP Groups
Use the drop-down menu to select LDAP groups to apply the server
policy configuration. Select the
Create
or
Edit
icons as needed to
either create a new group or modify an existing group. Use the arrow
icons to add and remove groups as required.
LDAP Group Verification
Select the checkbox to set the LDAP group search configuration. This
setting is enabled by default.
Local Realm
Define the LDAP Realm performing authentication using information
from an LDAP server. User information includes user name,
password, and the groups to which the user belongs.
Authentication Data Source
Select the RADIUS resource for user authentication with this server
policy. Options include
Local
for the local user database or
LDAP
for
a remote LDAP resource. The default setting is Local.
Local Authentication Type
Use the drop-down menu to select the local EAP authentication
scheme. The following EAP authentication types are supported by the
onboard RADIUS server:
All
– Enables both TTLS and PEAP.
TLS
- Uses TLS as the EAP type
TLS and MD5
- The EAP type is TTLS, with default authentication
using MD5.
TTLS and PAP
- The EAP type is TTLS, with default authentication
using PAP.
TTLS and MSCHAPv2
- The EAP type is TTLS, with default
authentication using MSCHAPv2.
PEAP and GTC
- The EAP type is PEAP, with default authentication
using GTC.
PEAP and MSCHAPv2
- The EAP type is PEAP with default
authentication using MSCHAPv2.
LDAP Authentication Type
Use the drop-down menu to select the LDAP authentication scheme.
The following LDAP authentication types are supported by the
external LDAP resource:
All
– Enables both TTLS and PAP and PEAP and GTC.
TTLS and PAP
- The EAP type is TTLS with default authentication
using PAP.
PEAP and GTC
- The EAP type is PEAP with default authentication
using GTC.
Enable CRL Validation
Select this option to enable a
Certificate Revocation List
(CRL) check.
Certificates can be checked and revoked for a number of reasons,
including the failure or compromise of a device using a certificate, a
compromise of a certificate key pair or errors within an issued
certificate. This option is disabled by default.
Enable Session Resumption
Select the checkbox to control volume and the duration cached data
is maintained by the server policy upon the termination of a server
policy session.The availability and quick retrieval of the cached data
speeds up session resumption.
Cached Entry Lifetime
Use the spinner control to set the lifetime (1 - 24 hours) cached data
is maintained by the RADIUS server policy. The default setting is 1
hour.
Содержание Altitude 4000 Series
Страница 14: ...Chapter 2 Overview AltitudeTM 4000 Series Access Point System Reference Guide 14...
Страница 44: ...Chapter 4 Quick Start AltitudeTM 4000 Series Access Point System Reference Guide 44...
Страница 58: ...Chapter 5 Dashboard AltitudeTM 4000 Series Access Point System Reference Guide 58...
Страница 116: ...Chapter 6 Device Configuration AltitudeTM 4000 Series Access Point System Reference Guide 116...
Страница 205: ...Adoption Overrides AltitudeTM 4000 Series Access Point System Reference Guide 205...
Страница 218: ...Chapter 6 Device Configuration AltitudeTM 4000 Series Access Point System Reference Guide 218...
Страница 328: ...Chapter 8 Security Configuration AltitudeTM 4000 Series Access Point System Reference Guide 328...
Страница 332: ...Chapter 9 Services Configuration AltitudeTM 4000 Series Access Point System Reference Guide 332...
Страница 368: ...Chapter 9 Services Configuration AltitudeTM 4000 Series Access Point System Reference Guide 368...
Страница 380: ...Chapter 10 Management Access Policy Configuration AltitudeTM 4000 Series Access Point System Reference Guide 380...
Страница 420: ...Chapter 12 Operations AltitudeTM 4000 Series Access Point System Reference Guide 420...
Страница 520: ...Appendix A Customer Support AltitudeTM 4000 Series Access Point System Reference Guide 520...
Страница 521: ......