Securing Radius Communication; Radius-Based User Authentication In Url; Radius-Based Cdr Accounting - AudioCodes Mediant 3000 User Manual

Media gateway & enterprise session border controller (e-sbc)
Hide thumbs Also See for Mediant 3000:
Table of Contents

Advertisement

User's Manual
When No Auth Server Defined (default): When no RADIUS server is configured
or if a server is configured but connectivity with the server is down (if the server is
up, the device authenticates the user with the server).
Always: First attempts to authenticate the user using the Web Users table, but if
not found, it authenticates the user with the RADIUS server.
6.
Click Submit, and then reset the device with a burn-to-flash for your settings to take
effect.

16.2.5.3 Securing RADIUS Communication

RADIUS authentication requires HTTP basic authentication (according to RFC 2617).
However, this is insecure as the usernames and passwords are transmitted in clear text
over plain HTTP. Thus, as digest authentication is not supported with RADIUS, it is
recommended that you use HTTPS with RADIUS so that the usernames and passwords
are encrypted.
To configure the device to use HTTPS, set the 'Secured Web Connection (HTTPS)'
parameter to HTTPS Only, in the Web Security Settings page (Configuration tab >
System menu > Management > Web Security Settings).

16.2.5.4 RADIUS-based User Authentication in URL

RADIUS authentication of the management user is typically done after the user accesses
the Web interface by entering only the device's IP address in the Web browser's URL field
(for example, http://10.13.4.12/) and then entering the username and password credentials
in the Web interface's login screen. However, authentication with the RADIUS server can
also be done immediately after the user enters the URL, if the URL also contains the login
credentials.
http://10.4.4.112/Forms/RadiusAuthentication?WSBackUserName=John&WSBackPasswor
d=1234
Note:

16.2.6 RADIUS-based CDR Accounting

Once you have configured a RADIUS server(s) for accounting in ''Configuring RADIUS
Servers'' on page 238, you need to enable and configure RADIUS-based CDR accounting
(see ''Configuring RADIUS Accounting'' on page 779).
Version 7.0
This feature allows up to five simultaneous users only.
For
245
16. Services
example:
Mediant 3000

Advertisement

Table of Contents
loading

Table of Contents