Extreme Networks ExtremeWare XOS Guide Manual page 328

Concepts guide
Hide thumbs Also See for ExtremeWare XOS Guide:
Table of Contents

Advertisement

Security
Complete the following two steps to limit the maximum concurrent login sessions under the same user
account:
1 Configure Radius and Radius-Accounting on the switch.
The Radius and Radius-Accounting servers used for this feature must reside on the same physical
Radius server. Standard Radius and Radius-Accounting configuration is required as described earlier
in this chapter.
2 Modify the Funk SBR 'vendor.ini' file and user accounts.
To configure the Funk SBR server, the file 'vendor.ini' must be modified to change the Extreme
Networks configuration value of 'ignore-ports' to yes as shown in the example below:
vendor-product
dictionary
ignore-ports
port-number-usage
help-id
After modifying the 'vendor.ini' file, the desired user accounts must be configured for the Max-
Concurrent connections. Using the SBR Administrator application, enable the check box for 'Max-
Concurrent connections' and fill in the desired number of maximum sessions.
RADIUS Server Configuration Example (Merit)
Many implementations of RADIUS server use the publicly available Merit
get a copy, search for the server on the website at:
www.merit.edu
Included below are excerpts from relevant portions of a sample Merit RADIUS server implementation.
The example shows excerpts from the client and user configuration files. The client configuration file
(
ClientCfg.txt
configuration file (
ClientCfg.txt
#Client Name
#----------------
#10.1.2.3:256
#pm1
#pm2
#merit.edu/homeless hmoemreilte.ses
#homeless
#xyz.merit.edu
#anyoldthing:1234
10.202.1.3
10.203.1.41
10.203.1.42
10.0.52.14
users
user
Password = ""
Filter-Id = "unlim"
admin
Password = "", Service-Type = Administrative
Filter-Id = "unlim"
eric
Password = "", Service-Type = Administrative
328
= Extreme Networks
= Extreme
= yes
= per-port-type
= 2000
) defines the authorized source machine, source name, and access level. The user
) defines username, password, and service type information.
users
Key
---------------
test
%^$%#*(&!(*&)+
:-):-(;^):-}!
testing
moretesting
whoknows?
andrew-linux
eric
eric
samf
[type]
[version]
--------------
---------
type = nas
v2
type=nas
type nas
type proxy
v1
type=Ascend:NAS v1
type=NAS+RAD_RFC+ACCT_RFC
type=nas
type=nas
type=nas
type=nas
©
AAA server application. To
[prefix]
--------
pfx
pm1.
pm2.
ExtremeWare XOS 11.3 Concepts Guide

Advertisement

Table of Contents
loading

This manual is also suitable for:

Extremeware xos 11.3

Table of Contents