EM316LNXNM-OT
Authentication, Authorization, and
Accounting
PN 1275005-100 Rev E6
90
10.3. Radius
An MRV specific dictionary file should be used with the desired Radius server. MRV provides a dictionary
for the following Radius servers:
• FreeRADIUS
• Steel-Belted
• Livingston
• Cistron
The RADIUS server requires three parameters:
• Username
• Password
• User Class Level
The user class level is defined by three different attributes. The recommended class attribute is to use the
MRV specific version which is MRV-Security-Level.
If using the MRV-Security-Level attribute (dictionary.mrv: Vendor code 33, Attribute 8):
• "View" – The user class level is set to VIEW.
• "Normal" – The user class level is set to NORMAL.
• "Super" – The user class level is set to SUPER.
If using the Cisco-AVPair attribute:
• "Class=View" – The user class level is set to VIEW.
• "Class=Normal" – The user class level is set to NORMAL.
• "Class=Super" – The user class level is set to SUPER.
If using the Service-Type attribute:
• "Login-User" - The user class level is set to NORMAL.
• "Administrative-User" - The user class level is set to SUPER.
If no attribute is specified, the user class level is set to VIEW. Avoid using more than one attribute for each
user. If the server configuration requires it, a set of rules determines the final user class. If both MRV-
Security-Level and Cisco-AVPair attributes are used, MRV-Security-Level takes precedence. These two
attributes are considered part of the explicit class. If the Service-Type attribute is used along with an
explicit class, then the highest class level is taken.
The following examples show how to setup a Radius server.
Содержание EM316LNXNM-OT
Страница 174: ...EM316LNXNM OT Appendix PN 1275005 100 Rev E6 167 Access Read only CLI command volt monitor 4...
Страница 181: ......