Aaa Server; Chapter 48 Aaa Server; Overview; Directory Service (Ad/Ldap) - ZyXEL Communications ISG50-ISDN User Manual

Integrated service gateway
Hide thumbs Also See for ISG50-ISDN:
Table of Contents

Advertisement

48.1 Overview

You can use a AAA (Authentication, Authorization, Accounting) server to provide access control to
your network. The AAA server can be a Active Directory, LDAP, or RADIUS server. Use the AAA
Server screens to create and manage objects that contain settings for using AAA servers. You use
AAA server objects in configuring ext-group-user user objects and authentication method objects
(see
Chapter 49 on page

48.1.1 Directory Service (AD/LDAP)

LDAP/AD allows a client (the ISG50) to connect to a server to retrieve information from a directory.
A network example is shown next.
Figure 420 Example: Directory Service Client and Server
The following describes the user authentication procedure via an LDAP/AD server.
A user logs in with a user name and password pair.
1
The ISG50 tries to bind (or log in) to the LDAP/AD server.
2
When the binding process is successful, the ISG50 checks the user information in the directory
3
against the user name and password pair.
If it matches, the user is allowed access. Otherwise, access is blocked.
4

48.1.2 RADIUS Server

RADIUS (Remote Authentication Dial-In User Service) authentication is a popular protocol used to
authenticate users by means of an external server instead of (or in addition to) an internal device
ISG50 User's Guide
C
HAPTER
639).
ISG
4 8

AAA Server

631

Advertisement

Table of Contents
loading

This manual is also suitable for:

Isg50

Table of Contents