Chapter 6:
Security
& Authentication
109
v3.3-a 12/07/2022
6.5 RADIUS
RADIUS (Remote Authentication Dial In User Service) is a security protocol for AAA
(Authorization, authentication and accounting), which is used to provide centralized
authentication for users who want to gain access to the network.
This section will define the processes necessary to install and configure the RADIUS client on up
to two servers on the WR-ZEN family device.
The steps to install and configure a RADIUS server on an Ubuntu machine are explained in
Appendix 0.
6.5.1 RADIUS configuration files
The different existing configuration files to modify the operation of the protocol are:
•
radiusd.conf:
Contains protocol configuration parameters.
•
users:
Contains users and access passwords.
•
clients.conf:
Contains the list of clients that are allowed to make requests to the RADIUS
server.
•
templates.conf:
The goal is to have a common configuration located in this file and list
only the differences in the individual sections. This feature is more useful for sections such
as "customers."
•
trigger.conf:
Used to set triggers for snmptrap.
•
proxy.conf:
RADIUS proxy and configuration directives.
•
policy.d:
Configuration files for policies of acceptance, rejection, filter, etc. of requests
6.5.2 Verification of RADIUS installation
In order to verify the installation, the following set-up is configured (Figure ). When a user
authenticates a device, this device will send a message to the RADIUS server, which will accept
or reject the user depending on if this device is taken as a client for this server.
Содержание WR-Z16
Страница 2: ...Chapter 1 Introduction 2 v3 3 a 12 07 2022 ...
Страница 10: ...Chapter 1 Introduction 10 v3 3 a 12 07 2022 ...
Страница 72: ...Chapter 5 Timing 72 v3 3 a 12 07 2022 ...
Страница 148: ...Chapter 8 Device Maintenance 148 v3 3 a 12 07 2022 ...
Страница 159: ...Chapter 9 Troubleshooting 159 v3 3 a 12 07 2022 Severity info local0 rsyslog server1 IP local0 rsyslog server2 IP ...