310 CHAPTER 7: CONFIGURING AUTHENTICATION, AUTHORIZATION, AND ACCOUNTING PARAMETERS
5 In the User Group Name box, type a name for the MAC address user
group (1 to 60 alphanumeric characters, with no spaces or tabs).
6 In the VLAN Name box, type the VLAN that the user group belongs to
(1 to 16 alphanumeric characters, with no spaces or tabs). The WX switch
will authorize the users in this group for that VLAN. For more information
on VLANs, see “Configuring VLANs” on page 188.
7 Click Choose Available.
8 Select a MAC user to be included in this user group.
■ To select multiple contiguous users, click Shift while selecting.
■ To select multiple noncontiguous users, click Ctrl while selecting.
9 Repeat step 7 and step 8 for each user you want included in this group.
10 Do one of the following:
■ To configure user attributes, see “Configuring User Authorization
Attributes”.
■ To close the Create MAC User Group wizard and save the changes,
click Finish.
Configuring User
Authorization
Attributes
Authorization attributes can be assigned to users in the local database or
on remote servers. The attributes, which include access control list (ACL)
filters, VLAN membership, encryption type, session time-out period, and
other session characteristics, let you control how and when users access
the network. When a user or group is authenticated, the local database
or RADIUS server passes the authorization attributes to MSS to
characterize the user’s session.
This section describes how to configure vendor-specific attributes (VSAs)
for users or group in the WX switch’s local database. To configure
attributes an RADIUS server, see the documentation for the server.
The only required user attribute is the VLAN name, which you specify
when you configure the user or user group.