Extreme Networks 200 Series Installation And User Manual page 69

Summit 200 series
Table of Contents

Advertisement

RADIUS Server Configuration Example (Merit)
Many implementations of RADIUS server use the publicly available Merit
available on the World Wide Web at:
http://www.merit.edu/aaa
Included below are excerpts from relevant portions of a sample Merit RADIUS server implementation.
The example shows excerpts from the client and user configuration files. The client configuration file
(
ClientCfg.txt
configuration file (
ClientCfg.txt
#Client Name
#----------------
#10.1.2.3:256
#pm1
#pm2
#merit.edu/homeless hmoemreilte.ses
#homeless
#xyz.merit.edu
#anyoldthing:1234
10.202.1.3
10.203.1.41
10.203.1.42
10.0.52.14
users
user
Password = ""
Filter-Id = "unlim"
admin
Password = "", Service-Type = Administrative
Filter-Id = "unlim"
eric
Password = "", Service-Type = Administrative
Filter-Id = "unlim"
albert
Filter-Id = "unlim"
samuel
Password = "password", Service-Type = Administrative
Filter-Id = "unlim"
RADIUS Per-Command Configuration Example
Building on this example configuration, you can use RADIUS to perform per-command authentication
to differentiate user capabilities. To do so, use the Extreme-modified RADIUS Merit software that is
available from the Extreme Networks web server at
http://www.extremenetworks.com/extreme/support/otherapps.htm or by contacting Extreme
Networks technical support. The software is available in compiled format for Solaris
operating systems, as well as in source code format. For all clients that use RADIUS per-command
authentication, you must add the following type to the client file:
type:extreme:nas + RAD_RFC + ACCT_RFC
Summit 200 Series Switch Installation and User Guide
) defines the authorized source machine, source name, and access level. The user
) defines username, password, and service type information.
users
Key
---------------
test
%^$%#*(&!(*&)+
:-):-(;^):-}!
testing
moretesting
whoknows?
andrew-linux
eric
eric
samf
Password = "password", Service-Type = Administrative
[type]
[version]
--------------
---------
type = nas
v2
type=nas
type nas
type proxy
v1
type=Ascend:NAS v1
type=NAS+RAD_RFC+ACCT_RFC
type=nas
type=nas
type=nas
type=nas
Authenticating Users
AAA server application,
©
[prefix]
--------
pfx
pm1.
pm2.
or Linux
67

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Summit 200-24Summit 200-48

Table of Contents