Nortel Networks 2300 Switch User Manual


 
561
Nortel WLAN—Security Switch 2300 Series Configuration Guide
Configuring communication with
RADIUS
For a list of the standard and extended RADIUS attributes and Nortel vendor-specific attributes (VSAs) supported by
WSS Software, see “Supported RADIUS attributes” (page 697).
RADIUS overview
Remote Authentication Dial-In User Service (RADIUS) is a distributed client-server system. RADIUS servers provide a
repository for all usernames and passwords, and can manage and store large groups of users.
RADIUS servers store user profiles, which include usernames, passwords, and other AAA attributes. You can use autho-
rization attributes to authorize users for a type of service, for appropriate servers and network segments through VLAN
assignments, for packet filtering by access control lists (ACLs), and for other services during a session.
You must include RADIUS servers in a server group before you can access them. (See “Configuring RADIUS server
groups” (page 567).)
Figure 1 illustrates the interactions between wireless users (clients), APs, a WSS, and its attached RADIUS servers when
the clients attempt access.
RADIUS overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 561
Before you begin . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 563
Configuring RADIUS servers . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 563
Configuring RADIUS server groups . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 567
RADIUS and server group configuration scenario . . . . . . . . . . . . . . . . . . . . . . . . . . 571