Radius Overview - Brocade Communications Systems RFS6000 System Reference Manual

Provides centralized wireless lan (wlan)
Hide thumbs Also See for RFS6000:
Table of Contents

Advertisement

6
Setting up Radius on the switch entails the following configuration activities:
NOTE
For hotspot deployment, Brocade recommends using the switch's onboard Radius server and
built-in user database. This is the easiest setup option and offers a high degree of security and
accountability.

Radius Overview

Radius enables centralized management of switch authentication data (usernames and
passwords). When a client attempts to associate to the Radius supported switch, the switch sends
the authentication request to the Radius server. The communications between the switch and
server are authenticated and encrypted through the use of a shared secret password (not
transmitted over the network).
The switch's local Radius server stores the authentication data locally, but can also be configured
to use a remote user database. A Radius server as the centralized authentication server is an
excellent choice for performing accounting. Radius can significantly increase security by
centralizing password management.
NOTE
The switch can be configured to use its own local Radius server or an external Radius server you
define and configure. For information on the benefits and risks of using the switch's resident Radius
Server (as opposed to an external Radius Server), see
Using the Switch's Radius Server Versus an External Radius on page 6-420.
CAUTION
When restarting or rebooting the switch, the Radius server is restarted regardless of its state
before the reboot.
The Radius server defines authentication and authorization schemes for granting the access to
wireless clients. Radius is also used for authenticating hotspot and remote VPN Xauth. The switch
can be configured to use 802.1x EAP for authenticating wireless clients with a Radius server. The
following EAP authentication types are supported by the switch's onboard Radius server:
418
Defining the Radius Configuration
Configuring Radius Authentication and Accounting
Configuring Radius Users
Configuring Radius User Groups
Viewing Radius Accounting Logs
TLS
TLS and MD5
TTLS and PAP
TTLS and MSCHAPv2
PEAP and GTC
PEAP and MSCHAPv2
Brocade Mobility RFS4000, RFS6000, and RFS7000 System Reference Guide
53-1002515-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Rfs4000Rfs7000

Table of Contents