10-55
Cisco ONS 15454 DWDM Installation and Operations Guide, R6.0
September 2005
Chapter 10 Manage the Node
DLP-G281 Configure the Node for RADIUS Authentication
DLP-G281 Configure the Node for RADIUS Authentication
Caution Do not configure a node for RADIUS authentication until after you have added that node to the RADIUS
server and added the RADIUS server to the list of authenticators. If you do not add the node to a
RADIUS server prior to activating RADIUS authentication, no user will be able to access the node. Refer
to the User Guide for Cisco Secure ACS for Windows Server for more information about adding a node
to a RADIUS server.
Note The following Cisco vendor-specific attribute (VSA) needs to be specified when adding users to the
RADIUS server:
shell:priv-lvl=N
where N is equal to:
• 0 for Retrieve user
• 1 for Maintenance user
• 2 for Provisioning user
• 3 for Superuser
Step 1 In node view, click the Provisioning > Security > RADIUS Server tabs (Figure 10-2).
Purpose This task allows you to configure a node for Remote Authentication Dial In
User Service (RADIUS) authentication. RADIUS validates remote users
who are attempting to connect to the network.
Tools/Equipment None
Prerequisite Procedures DLP-G46 Log into CTC, page 2-25
Before configuring the node for RADIUS authentication, you must first add
the node as a network device on the RADIUS server. Refer to the User
Guide for Cisco Secure ACS for Windows Server for more information
about configuring a RADIUS server.
Required/As Needed As needed
Onsite/Remote Onsite or remote
Security Level Superuser