Procedure 7-22: Provision RADIUS authentication for user logins

- Overview

Use this procedure to provision Remote Authentication Dial In User Service (RADIUS) authentication for user logins.

- Privilege level

You must log in as a Privileged user to complete this procedure.

- Before you begin

Prior to performing this procedure:

  1. Refer to Before you begin and Required equipment in this chapter.

  2. Obtain the work instructions for this procedure.

Steps

Perform the following steps to provision Remote Authentication Dial In User Service (RADIUS) authentication for user logins.

 
1

From the System View menu, select Administration → Security → Provision RADIUS Server.

Result:

The Provision RADIUS Server window opens.


2

Important!

Only one primary RADIUS server and one secondary RADIUS server are allowed.

Enter the following parameters according to the work instructions and click Create to a provision a RADIUS server:

  • IP Address: Enter the IP address of the RADIUS server. It has an IPv4 address format which consists of four dot-separated decimal numbers ranging from 0 to 255.

  • Role: Select Primary or Secondary as the functioning role of the RADIUS server. Only one Primary server and one Secondary server are allowed.

  • Port Number: Enter the User Datagram Protocol (UDP) port number for the RADIUS server. The valid values are integers from 1 to 65535. The RADIUS protocol runs on the top of UDP.

  • Secret: Enter the shared secret between the RADIUS client and the RADIUS server. Valid values are case-sensitive strings of 1 to 128 characters.

    Symbols may not include space ( ), at (@), comma (,), colon (:), equals sign (=), quotation mark ("), semicolon (;), asterisk (*), exclamation mark (!), question mark (?), or back slash (/).

Result:

A dialog box may appear asking you to confirm executing this command. Click Yes.

If required, repeat this step to provision another RADIUS server.


3

Important!

The system-level RADIUS Authentication parameter must be Enabled to provision the local network element as a RADIUS client.

Select View → Equipment to access the system-level parameters and verify that the RADIUS Authentication parameter is Enabled for the network element.

If required, select Configuration → Equipment to access the system-level parameters and enable RADIUS Authentication for the network element.

Reference:

Procedure 6-2: Provision system parameters


End of steps

Copyright © 2011 Alcatel-Lucent. All rights reserved.