Chapter 4: KX III Administrator Help
75
Returning User Group Information via RADIUS
When a RADIUS authentication attempt succeeds, the KX III determines
the permissions for a given user based on the permissions of the user's
group.
Your remote RADIUS server can provide these user group names by
returning an attribute, implemented as a RADIUS FILTER-ID. The
FILTER-ID should be formatted as follows: Raritan:G{
GROUP_NAME
}
where
GROUP_NAME
is a string denoting the name of the group to
which the user belongs.
Raritan:G{GROUP_NAME}:D{Dial Back Number}
where GROUP_NAME is a string denoting the name of the group to
which the user belongs and Dial Back Number is the number associated
with the user account that the KX III modem will use to dial back to the
user account.
RADIUS Communication Exchange Specifications
The KX III sends the following RADIUS attributes to your RADIUS
server:
Attribute
Data
Log in
Access-Request (1)
NAS-Port-Type (61)
VIRTUAL (5) for network connections.
NAS-IP-Address (4)
The IP address for the KX III.
User-Name (1)
The user name entered at the login screen.
Acct-Session-ID (44)
Session ID for accounting.
User-Password(2)
The encrypted password.
Accounting-Request(4)
Acct-Status (40)
Start(1) - Starts the accounting.
NAS-Port-Type (61)
VIRTUAL (5) for network connections.
NAS-Port (5)
Always 0.
NAS-IP-Address (4)
The IP address for the KX III.
User-Name (1)
The user name entered at the login screen.
Acct-Session-ID (44)
Session ID for accounting.
Содержание dominion kx III
Страница 12: ......
Страница 103: ...Chapter 4 KX III Administrator Help 91 3 Click OK ...
Страница 159: ...Chapter 4 KX III Administrator Help 147 ...
Страница 283: ...Chapter 7 KX III Local Console KX III End User Help 271 ...
Страница 391: ......