Allied Telesis AT-WR4500 Network Router User Manual


 
132 AT-WR4500 Series - IEEE 802.11abgh Outdoor Wireless Routers
RouterOS v3 Configuration and User Guide
7 AAA Configuration
7.1 RADIUS client
Document revisi on: 1.6 (February 14, 200 7, 12:00 GMT)
Applies to: V2.9
7.1.1 General Information
Summary
This document provides information about RouterOS built-in RADIUS client configuration, supported
RADIUS attributes and recommendations on RADIUS server selection.
Specifications
Packages required: system
License required: Level1
Submenu level: /radius
Standards and Technologies: RADIUS
Related Topics
HotSpot User AAA
Router User AAA
PPP User AAA
IP Addresses and ARP
Description
RADIUS, short for Remote Authentication Dial-In User Service, is a remote server that provides
authentication and accounting facilities to various network apliances. RADIUS authentication and
accounting gives the ISP or network administrator ability to manage PPP user access and accounting from
one server throughout a large network. The RouterOS has a RADIUS client which can authenticate for
HotSpot, PPP, PPPoE, PPTP, L2TP and ISDN connections. The attributes received from RADIUS server
override the ones set in the default profile, but if some parameters are not received they are taken from
the respective default profile.
The RADIUS server database is consulted only if no matching user acces record is found in router's local
database.
Traffic is accounted locally with RouterOS Traffic Flow and snapshot image can be gathered using Syslog
utilities. If RADIUS accounting is enabled, accounting information is also sent to the RADIUS server
default for that service.
7.1.2 RADIUS Client Setup
Submenu level: /radius
Description
This facility allows you to set RADIUS servers the router will use to authenticate users.
Property Description
accounting-backup (yes | no; default: no) - this entry is a backup RADIUS accounting server
accounting-port (integer; default: 1813) - RADIUS server port used for accounting
address (IP address; default: 0.0.0.0) - IP address of the RADIUS server
authentication-port (integer; default: 1812) - RADIUS server port used for authentication
called-id (text; default: "") - value depends on Point-to-Point protocol:
ISDN - phone number dialled (MSN)
PPPoE - service name
PPTP - server's IP address
L2TP - server's IP address