ZyXEL Communications ENC User Manual page 285

Enterprise network center
Table of Contents

Advertisement

RADIUS Server
RADIUS (Remote Authentication Dial-In User Service) authentication is a popular protocol used to
authenticate users by means of an external server instead of (or in addition to) an internal device
user database that is limited to the memory capacity of the device. In essence, RADIUS
authentication allows you to validate a large number of users from a central location.
Figure 235 RADIUS Server Network Example
ASAS
ASAS (Authenex Strong Authentication System) is a RADIUS server that works with the One-Time
Password (OTP) feature. Purchase a NXC5200 OTP package in order to use this feature. The
package contains server software and physical OTP tokens (PIN generators). Do the following to
use OTP. See the documentation included on the ASAS' CD for details.
Install the ASAS server software on a computer.
1
Create user accounts on the NXC5200 and in the ASAS server.
2
Import each token's database file (located on the included CD) into the server.
3
Assign users to OTP tokens (on the ASAS server).
4
Configure the ASAS as a RADIUS server in the ENC's Wireless Controller Management > Profile
5
> Wireless Profile > AAA Server screens.
Give the OTP tokens to (local or remote) users.
6
Authentication Capability List
This list displays the NXC5200's authentication capabilities:
Table 152 Authentication Capability List
EAP-TLS
EAP-TTLS
( Mschapv2/Mschap)
EAP-TTLS
(eap)
ENC User's Guide
INTERNAL AUTHENTCATION METHOD
AD
LDAP
O
O
A
O
O
X
X
Chapter 8 Application
EXTERNAL
RADIUS
RADIUS
O
O
O
O
X
O
285

Advertisement

Table of Contents
loading

Table of Contents