Nomadix Access gateway User Manual page 184

Access gateway
Hide thumbs Also See for Access gateway:
Table of Contents

Advertisement

The tunnel server in this case is configured to authenticate users via another RADIUS server
that handles a single realm. Since it handles a single realm, no realm information is needed for
users and so must be stripped. In this case, it is stripped by the NSE, but it could easily have
been stripped by the tunnel server, or by the tunnel server's RADIUS server. This is by design
and for maximum flexibility.
Also note that the "Local hostname" field is blank which means that the NSE's default local
hostname of "usg_lac" will be used by the NSE. This allows for setting the local hostname to
any desired value other than the default. The L2TP peers exchange their local hostnames
during tunnel negotiation.
To add a RADIUS Service Profile, click on the appropriate
1.
Based Routing Settings screen.
The Add Realm Routing Policy screen appears:
To make this entry the "active" entry, click on the
2.
To define a specific realm, choose the
3.
the
Realm Name
define your search options:
Prefix match only
Suffix match only
Match either
Select the required
4.
Click on the
5.
information.
Click on the
6.
When you have completed the definition of your Realm Routing Policy, you can return to
7.
the previous screen (Realm-Based Routing Settings) by clicking on the
Realm-Based Routing Settings page
The screen below shows a realm routing policy that handles prefix-based usernames using
a RADIUS service profile. Notice that "Specific Realm" is clicked and the "Realm name"
is "cisp". Also notice that "Prefix match only" is clicked and that the delimiter is "/". This
means that this realm routing policy will match usernames that are of the format "cisp/
username".
172
field. Alternatively, you can choose the
RADIUS Service Profile
Strip off routing information
button to add this Realm Routing Policy.
Add
Entry Active
option and enter the destination in
Specific Realm
Wildcard match
from the pull-down menu.
check box if you want to remove the routing
link.
A
G
CCESS
button on the Realm-
Add
check box.
option, then
Back to Main
System Administration
ATEWAY

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ag2400Ag5600Ag5800Ag 3100Ag 5500Ag 2300

Table of Contents