Supported Radius Attributes; Attributes Used For Authentication - ZyXEL Communications GS1350 Series User Manual

Gbe layer 2 poe switch
Hide thumbs Also See for GS1350 Series:
Table of Contents

Advertisement

Table 80 Supported VSAs (continued)
FUNC T IO N
Egress Bandwidth
Assignment
Privilege Assignment
22.5.1.1 T unne l Pro to c o l Attrib ute
You can configure tunnel protocol attributes on the RADIUS server (refer to your RADIUS server
documentation) to assign a port on the Switch to a VLAN. The port VLAN settings are fixed and
untagged. This will also set the port's VID. The following table describes the values you need to
configure. Note that the bolded values in the table are fixed values as defined in RFC 3580.
Table 81 Supported Tunnel Protocol Attribute
FUNC T IO N
VLAN Assignment
22.5.2 Suppo rte d RADIUS Attrib ute s
Remote Authentication Dial-In User Service (RADIUS) attributes are data used to define specific
authentication elements in a user profile, which is stored on the RADIUS server. This appendix lists the
RADIUS attributes supported by the Switch.
Refer to RFC 2865 for more information about RADIUS attributes used for authentication.
This section lists the attributes used by authentication functions on the Switch. In cases where the
attribute has a specific format associated with it, the format is specified.
22.5.3 Attrib ute s Use d fo r Authe ntic a tio n
The following sections list the attributes sent from the Switch to the RADIUS server when performing
authentication.
22.5.3.1 Attrib ute s Use d fo r Authe ntic a ting Privile g e Ac c e ss
User-Name
AT T RIBUT E
Vendor-Id = 890
Vendor-Type = 2
egress rate (Kbps in decimal format)
Vendor-data =
Vendor-ID = 890
Vendor-Type = 3
Vendor-Data = "shell:priv-lvl=N"
or
(CISCO)
Vendor-ID = 9
(CISCO-AVPAIR)
Vendor-Type = 1
Vendor-Data = "shell:priv-lvl=N"
where
N
is a privilege level (from 0 to 14).
Note: If you set the privilege level of a login account differently on the RADIUS
servers and the Switch, the user is assigned a privilege level from the
database (RADIUS or local) the Switch uses first for user authentication.
AT T RIBUT E
Tunnel-Type = VLAN(13)
Tunnel-Medium-Type = 802(6)
Tunnel-Private-Group-ID =
Note: You must also create a VLAN with the specified VID on the Switch.
GS1350 Series User's Guide
183
VLAN ID

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Gs1350-6hpGs1350-12hpGs1350-18hpGs1350-26hp

Table of Contents