
Access Control
Access Control – Telnet/SSH/Web
Microsemi PDS-408G Web Management User Guide Ver. 1.0.1, 03-2019
34
Figure 5-4: Authentication Example
In the example above the user us password authentication is processed as follows:
•
Console:
The username and password are processed localy based on the unit configuration.
•
Telnet
: Telnet is disabled (no Telnet)
•
SSH
: The remote SSH us password authentication will be done by a remote Radius
Server. In case the Radius Server is down (no reply), then authentication server will
be used instead. In case Server is also down (no reply) then it will be tested against
the unit local configuration.
•
Web
: The remote web us password authentication will be done by a remote Radius
Server. In case the Radius Server is down (no reply), then authentication server will
be used instead. In case server is also down, then the user will be rejected.
5.3.2
Accounting Method Configuration
Any activity on any of the text-based interface (Console, Telnet, SSH) has the option to be reported and
logged to an Accounting Server
Figure 5-5: Accounting Method Configuration example
The user can configure that any login/logout or any command being typed will be reported to
Accounting Server (the same used for remote user authentication). Same for any CLI command typed
by the user.
NOTE:
NOTE – RADIUS, configuration is done from in other pages.