Chapter 6: SX II Administration
102
Cisco ACS 5.x for RADIUS Authentication
The Cisco Access Control Server (ACS) is another authentication
solution supported by the SX II.
For the SX II to support RADIUS, both the SX II and the user information
must be added into the RADIUS configuration.
If you are using a Cisco ACS 5.x server, after you have configured the
SX II for RADIUS authentication, complete the following steps on the
Cisco ACS 5.x server.
Note: The following steps include the Cisco menus and menu items used
to access each page. Please refer to your Cisco documentation for the
most up to date information on each step and more details on performing
them.
•
Add the SX II as a AAA Client (
Required
) - Network Resources >
Network Device Group > Network Device and AAA Clients
•
Add/edit users (
Required
) - Network Resources > Users and Identity
Stores > Internal Identity Stores > Users
•
Configure Default Network access to enable CHAP Protocol
(
Optional
) - Policies > Access Services > Default Network Access
•
Create authorization policy rules to control access (
Required
) -
Policy Elements > Authorization and Permissions > Network Access
> Authorization Profiles
Dictionary Type: RADIUS-IETF
RADIUS Attribute: Filter-ID
Attribute Type: String
Attribute Value: Raritan:G{Serial_Admin} (where Serial_Admin is
group name created locally on SX II). Case sensitive.
•
Configure Session Conditions (Date and Time) (
Required
) - Policy
Elements > Session Conditions > Date and Time
•
Configure/create the Network Access Authorization Policy
(
Required
) - Access Policies > Access Services > Default Network
Access>Authorization
RADIUS Communication Exchange Specifications
The SX II sends the following RADIUS attributes to your RADIUS server:
Attribute
Data
Log in
Access-Request (1)
NAS-Port-Type (61)
VIRTUAL (5) for network connections.
Содержание Dominion SX II
Страница 75: ...Chapter 5 Raritan Serial Console RSC Help 68 2 Click Yes when prompted to confirm...
Страница 130: ...Chapter 6 SX II Administration 123 6 Click OK...
Страница 165: ...Chapter 6 SX II Administration 158 17 Click OK Apply Settings to Other Ports...
Страница 187: ...Chapter 6 SX II Administration 180 5 To page through the audit log use the Older and Newer links...
Страница 260: ...253 Dominion SX II Overview Appendix C FAQs...
Страница 267: ...Appendix C FAQs 260 Installation Management Configuration...