Assigning Authorization Attributes - 3Com 3CRWX120695A, 3CRWX440095A Configuration Manual

Wireless lan switch and controller
Table of Contents

Advertisement

Assigning
Authorization
Attributes
To verify the AAA configuration, type the following command:
WX1200# display aaa
...
set authentication last-resort ssid guestssid local
...
user last-resort-guestssid
vlan-name = k3
Authorization attributes can be assigned to users in the local database or
on remote servers. The attributes, which include access control list (ACL)
filters, VLAN membership, encryption type, session time-out period, and
other session characteristics, let you control how and when users access
the network. When a user or group is authenticated, the local database
or RADIUS server passes the authorization attributes to MSS to
characterize the user's session.
The VLAN attribute is required. MSS can authorize a user to access the
network only if the VLAN to place the user on is specified.
Table 32 lists the authorization attributes supported by MSS. (For brief
descriptions of all the RADIUS attributes and 3Com vendor-specific
attributes supported by MSS, as well as the vendor ID and types for 3Com
VSAs configured on a RADIUS server "Supported RADIUS Attributes" on
page 423.)

Assigning Authorization Attributes

313

Advertisement

Table of Contents
loading

Table of Contents