User Manual
Advanced Console Server & RIM Gateway User Manual
197
9.1.7
Remote groups with RADIUS authentication
Enter the RADIUS
Authentication and Authorization Server Address
and
Server Password
Click Apply.
Edit the Radius user’s file to include group information and restart the Radius server
When using RADIUS authentication, group names are provided to the
console server
using the Framed-Filter-Id
attribute. This is a standard RADIUS attribute, and may be used by other devices that authenticate via RADIUS.
To interoperate with other devices using this field, the group names can be added to the end of any existing content in
the attribute, in the following format:
:group_name=testgroup1,users:
The above example sets the remote user as a member of testgroup1 and users if groups with those names exist on
the
console server
. Any groups which do not exist on the
console server
are ignored.
When setting the Framed-Filter-Id, the system may also remove the leading colon for an empty field. To work around
this, add some dummy text to the start of the string. For example:
dummy:group_name=testgroup1,users:
If no group is specified for a user, for example AmandaJones, then the user will have no User Interface and
serial port access but limited console access
Default groups available on the
console server
includ
e ‘
admin’
for administrator access and ‘users’ for general
user access
Содержание ACM5000
Страница 3: ......
Страница 10: ...Table of Contents 10 Console Server RIM Gateway User Manual...
Страница 11: ......
Страница 94: ...Chapter 5 Firewall Failover and Out of Band 94 Console Server RIM Gateway User Manual...
Страница 119: ......
Страница 149: ......
Страница 191: ......
Страница 205: ......
Страница 225: ......
Страница 303: ......
Страница 313: ......
Страница 323: ......