Appendix D - Radius Attributes Assignment - D-Link DGS-3630 Series Reference Manual

Layer 3 stackable managed switch web ui reference guide
Hide thumbs Also See for DGS-3630 Series:
Table of Contents

Advertisement

DGS-3630 Series Layer 3 Stackable Managed Switch Web UI Reference Guide

Appendix D - RADIUS Attributes Assignment

The RADIUS Attributes Assignment on the Switch is used in the following modules: Console, Telnet, SSH, Web,
802.1X, MAC-based Access Control, and WAC.
The description that follows explains the following RADIUS Attributes Assignment types:
• Privilege Level
• Ingress/Egress Bandwidth
• 802.1p Default Priority
• VLAN
• ACL
To assign the Privilege Level by the RADIUS server, the proper parameters should be configured on the RADIUS
server. The table below shows the parameters for the bandwidth.
The parameters of the Vendor-Specific attributes are:
Vendor-Specific
Attribute
Vendor-ID
Vendor-Type
Attribute-Specific Field
If the user has configured the privilege level attribute of the RADIUS server (for example, level 15) and the Console,
Telnet, SSH, and Web authentication is successful, the device will assign the privilege level (according to the RADIUS
server) to this access user. However, if the user does not configure the privilege level attribute and authenticates
successfully, the device will not assign any privilege level to the access user. If the privilege level is configured less
than the minimum supported value or greater than the maximum supported value, the privilege level will be ignored.
To assign the Ingress/Egress Bandwidth by the RADIUS server, the proper parameters should be configured on the
RADIUS Server. The table below shows the parameters for bandwidth.
The parameters of the Vendor-Specific attributes are:
Vendor-Specific Attribute
Vendor-ID
Vendor-Type
Attribute-Specific Field
If the user has configured the bandwidth attribute of the RADIUS server (for example, ingress bandwidth 1000Kbps)
and 802.1X authentication is successful, the device will assign the bandwidth (according to the RADIUS server) to the
port. However, if the user does not configure the bandwidth attribute and authenticates successfully, the device will
not assign any bandwidth to the port. If the bandwidth attribute is configured on the RADIUS server with a value of "0",
the effective bandwidth will be set "no_limited", and if the bandwidth is configured less than "0" or greater than
maximum supported value, the bandwidth will be ignored.
Description
Defines the vendor.
Defines the attribute.
Used to assign the privilege level of the user to operate the
Switch.
Description
Defines the vendor.
Defines the attribute.
Used to assign the bandwidth of a port.
Value
171 (DLINK)
2 (for ingress bandwidth)
3 (for egress bandwidth)
Unit (Kbits)
679
Value
Usage
171 (DLINK)
Required
1
Required
Range (1-
Required
15)
Usage
Required
Required
Required

Advertisement

Table of Contents
loading

Table of Contents