Nortel 2350 Installation And Basic Configuration Manual page 120

Wlan-security switch 2300 series
Hide thumbs Also See for 2350:
Table of Contents

Advertisement

120 Configuring a 2370, 2360, or 2380 Switch for Basic Service
Authentication Example for Users in a Windows Domain
The following command configures an authentication rule for a set of users, known as a user glob, in a
Microsoft Windows domain. The command configures all users in the EXAMPLE Windows domain to use
any supported EAP type to communicate with EAP-capable RADIUS server group grp1, when attempting to
access SSID private_wlan. The server group authenticates the users.
2370# set authentication dot1x ssid private_wlan EXAMPLE\* pass-through grp1
success: change accepted.
Authentication Example for Users in a UNIX Domain
The following commands add authentication rules for user globs in a UNIX domain. Users are authenticated
by using any supported EAP type to communicate with EAP-capable RADIUS server group grp1.
2370# set authentication dot1x ssid private_wlan *@mktg.example.com
pass-through grp1
success: change accepted.
2370# set authentication dot1x ssid private_wlan *@eng.example.com
pass-through grp1
success: change accepted.
2370# set authentication dot1x ssid private_wlan *@*.*.com pass-through
grp1
success: change accepted.
2370# set authentication dot1x ssid private_wlan *@*.com pass-through grp1
success: change accepted.
Displaying the Server Group and Authentication Configuration
The show aaa command displays the server group and authentication configuration on a WSS. In the
following example, the configuration contains a server group with two RADIUS servers and an authentication
rule for users in a Windows domain.
2370# show aaa
Default Values
authport=1812 acctport=1813 timeout=5 acct-timeout=5
retrans=3 deadtime=0 key=(null) author-pass=(null)
Radius Servers
Server
-------------------------------------------------------------------
svr1
svr2
Server groups
grp1 (load-balanced): svr1 svr2
set authentication dot1x ssid private_wlan EXAMPLE\* pass-through grp1
320656-A
Addr
10.10.70.20
1812 1813 5
10.10.70.40
1812 1813 5
Ports
T/o Tries Dead State
3
3
0
UP
0
UP

Advertisement

Table of Contents
loading

This manual is also suitable for:

2370236023802361

Table of Contents