IMPORTANT: Make sure to use TAB (or double TAB) character after a newline to add the
AKCP-User-Role attribute per user. Space, comma etc. will not work!
testuser Cleartext-Password := "testpw"
AKCP-User-Role := 16
# 16 = User level
testadmin Cleartext-Password := "admin1"
AKCP-User-Role := 32
# 32 = Admin level
tst Cleartext-Password := "tst"
AKCP-User-Role := 0
# 0 = Viewer level
If you are using a different authentication database to store Radius users (ex. SQL, LDAP etc.)
then adapt the configuration accordingly to define the attribute per user.
Even if the unit has been added to AKCPro Server (APS), only Radius authentication works and
the Access Control users cannot be used to log in to the unit's Web UI.
When Radius mode is enabled, the existing local accounts (User, Viewer and other accounts)
are not used unless there is a communication issue with the Radius server, in which case the
units will fall back to the local password authentication.
However, the built-in local Admin user will always be available to use. You should not have
"admin" or "Admin" user in your Radius configuration, as it will be ignored and the local Admin
account is used instead.
Note: We recommend that you avoid using the same username in both the unit's local user
database and on the Radius server, as this could lead to incorrect permissions being applied for
the user.
- 12 -
SP+ Radius User Manual
Need help?
Do you have a question about the FreeRADIUS SP+ and is the answer not in the manual?
Questions and answers