Configuring Eap Offload With Server Authentication - Nortel 2350 Installation And Basic Configuration Manual

Wlan-security switch 2300 series
Hide thumbs Also See for 2350:
Table of Contents

Advertisement

Configuring EAP Offload with Server Authentication

You can configure a WSS to perform all EAP processing locally and use RADIUS servers for authentication and autho-
rization. To configure a WSS to perform EAP processing locally and use RADIUS servers for MS-CHAP-V2:
1
Install server certificates on the WSS. You can install certificates assigned by a CA or generate
self-signed certificate on the switch.
(See
"Installing a Server Certificate for Network Users" on page
Certificate for Network Users" on page
Authority for Network Users" on page
2
Configure the RADIUS servers and add them to server group. You must configure a server group even if
you have only one server.
(See
"Configuring RADIUS Servers for Pass-Through Authentication" on page
3
Set the 802.1X authentication protocol to PEAP-MS-CHAP-V2. With this protocol setting, a WSS
performs EAP locally and uses a RADIUS server to complete the process by performing authentication
and authorization with MS-CHAP-V2.
(See
"Configuring the Authentication Protocol for Offload Authentication" on page
Figure 25
shows an example of offload user authentication.
WLAN—Security Switch 2300 Series Installation and Basic Configuration Guide
Configuring a 2370, 2360, or 2380 Switch for Basic Service 121
95, and
"Installing a Certificate Assigned by a Certificate
95.)
94,
"Generating a Self-Signed
118.)
122.)

Advertisement

Table of Contents
loading

This manual is also suitable for:

2370236023802361

Table of Contents