Chapter 6:
Security
& Authentication
106
v3.3-a 12/07/2022
Finally, the fourth option allows to use Diffie-Hellman parameters in the TLS key exchange. This
is optional, but recommended. There are two buttons to generate and download the DH
parameters file.
Diffie-Hellman generation time
To generate the Diffie-Hellman parameters file, it is required to reboot the device
and wait up to 20 minutes, or even more in some particular cases. In this period, the
device
MUST NOT
be powered off, rebooted or any similar action. The device will
not be accessible until this process finishes.
6.4
(Terminal Access Controller Access Control Server) is a security protocol for AAA
(Authorization, authentication and accounting), which is used to provide centralised
authentication for users who want to gain access to the network.
This section explains how to install and configure a on up to two servers on a Linux
environment where the client is a WR-ZEN family device.
The instructions to install and configure a server on an Ubuntu machine are explained
in the Appendix 0.
In order to configure the protocol, it is necessary to modify the configuration file usually
located at:
/etc//tac_plus.conf
6.4.1 Verification of installation
In order to verify the installation, it is possible to use the following set-up (Figure ). The
client will ask for authentication to the server, which will answer if the user passed. Then the
device will ask for credentials, which will be validated by the server and grant access to
the user if the authentication was successful.
Содержание WR-Z16
Страница 2: ...Chapter 1 Introduction 2 v3 3 a 12 07 2022 ...
Страница 10: ...Chapter 1 Introduction 10 v3 3 a 12 07 2022 ...
Страница 72: ...Chapter 5 Timing 72 v3 3 a 12 07 2022 ...
Страница 148: ...Chapter 8 Device Maintenance 148 v3 3 a 12 07 2022 ...
Страница 159: ...Chapter 9 Troubleshooting 159 v3 3 a 12 07 2022 Severity info local0 rsyslog server1 IP local0 rsyslog server2 IP ...