Dell 6.2 Server User Manual


 
a. In the 802.1x Authentication Profile list on the right window pane, enter corpnet in the entry blank at the
bottom of the list, and click Add.
b. Select the corpnet 802.1x authentication profile you just created.
c. You can configure parameters in the Basic or Advanced tabs. These parameters are described in detail in
Table 29. For this example, you use the default values, so click Apply.
2. Select the AAA Profiles tab.
a. Scroll down to the bottom of the AAA Profiles Summary pane, then click Add. An entry blank appears.
b. Enter corpnet, then click Add.
c. Scroll back up the AAA Profiles Summary pane, and select the corpnet AAA profile you just created.
d. For this example, change the 802.1x Authentication Default Role, select the employee role you previously
configured. You can also configure other the AAA profile parameters (see Table 87).
e. Click Apply.
Parameter Description
Initial role Click the Initial Role drop-down list and select a role for unauthenticated
users. The default role for unauthenticated users is logon.
MAC Authentication Default Role Click the MAC Authentication Default Role drop-down list and select the role
assigned to the user when the device is MAC authenticated. The default role
for MAC authentication is the guest user role. If derivation rules are present,
the role assigned to the client through these rules take precedence over the
default role.
NOTE: This feature requires the PEFNG license.
802.1X Authentication Default Role Click the 802.1X Authentication Default Role drop-down list and select the role
assigned to the client after 802.1x authentication. The default role for 802.1x
authentication is the guest user role. If derivation rules are present, the role
assigned to the client through these rules take precedence over the default
role.
NOTE: This feature requires the PEFNG license.
RADIUS Interim Accounting When this option is enabled, the RADIUS accounting feature allows the
controller to send Interim-Update messages with current user statistics to the
server at regular intervals. This option is disabled by default, allowing the
controller to send only start and stop messages to the RADIUS accounting
server.
User derivation rules Click the User derivation rules drop-down list and specify a user attribute
profile from which the user role or VLAN is derived.
Wired to Wireless Roaming Enable this feature to keep users authenticated when they roam from the wired
side of the network. This feature is enabled by default.
SIP authentication role Click the SIP authentication role drop-down list and specify the role assigned
to a session initiation protocol (SIP) client upon registration.
NOTE: This feature requires the PEFNG license.
Device Type Classification When you select this option, the controller will parse user-agent strings and
attempt to identify the type of device connecting to the AP. When the device
type classification is enabled, the Global client table shown in the
Monitoring>Network > All WLAN Clients window shows each client’s device
type, if that client device can be identified.
Table 87:
AAA Profile Parameters
DellPowerConnectW-SeriesArubaOS6.2 | User Guide VirtualAPs | 319