Setting Up The Radius Server - Novell ZENWORKS NETWORK ACCESS CONTROL 5.0 - 09-22-2008 User Manual

Table of Contents

Advertisement

11.3.1 Setting up the RADIUS Server

Switches support 802.1X authentication by authenticating against a RADIUS server. The Novell
ZENworks Network Access Control 802.1X solution must be integrated with the RADIUS
authentication to "intervene" in the authentication process, test endpoints, and assign them to the
appropriate VLAN. Novell ZENworks Network Access Control can be deployed and integrated with
RADIUS in the following three ways:
Install the Novell ZENworks Network Access Control Plug-in to the Microsoft
server (see
Microsoft IAS RADIUS Server" on page
Proxy requests from the built-in Novell ZENworks Network Access Control RADIUS server to
any other RADIUS server (see
Using the Built-in Novell ZENworks Network Access Control RADIUS Server" on page
Use the built-in Novell ZENworks Network Access Control RADIUS server for authentication
(see
Section 11.3.2, "Enabling Novell ZENworks Network Access Control for 802.1X," on
page
264).
Any of these solutions can be customized to work with your existing LDAP or Active Directory user
databases. This section provides instructions of configuring these three options.
Using the Novell ZENworks Network Access Control IAS Plug-in to the Microsoft IAS
RADIUS Server
This section provides instructions for how to install the Microsoft IAS to the Novell ZENworks
Network Access Control IAS plug-in.
TIP: For an explanation of how the components communicate, see
ZENworks Network Access Control and 802.1X," on page
®
Microsoft
implementation of a Remote Authentication Dial-In User Service (RADIUS) server. This section
provides instructions on configuring this server to use with Novell ZENworks Network Access
Control.
For details on the Windows Server 2003 IAS, refer to the following link:
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/technologies/ias.mspx (http://
www.microsoft.com/technet/prodtechnol/windowsserver2003/technologies/ias.mspx)
In addition to installing the Windows Server 2003 software, you also need to have a database of
users for authentication purposes. The Windows IAS implementation of RADIUS can use the
following:
Active Directory (recommended)
A Windows NT domain
The local Security Accounts Manager (SAM)
240 Novell ZENworks Network Access Control Users Guide
"Using the Novell ZENworks Network Access Control IAS Plug-in to the
"Proxying RADIUS Requests to an Existing RADIUS Server
Windows Server
2003 Internet Authentication Service (IAS) is Microsoft's
TM
240).
Section 11.2, "Novell
236.
®
IAS RADIUS
261).

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zenworks network access control 5.0

Table of Contents