EasyManuals Logo

Digi AnywhereUSB Plus User Manual

Digi AnywhereUSB Plus
815 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #346 background imageLoading...
Page #346 background image
User authentication Remote Authentication Dial-In User Service (RADIUS)
AnywhereUSB® Plus User Guide
346
RADIUS user configuration
When configured to use RADIUS support, the AnywhereUSB Plus device uses a remote RADIUS server
for user authentication (password verification) and authorization (assigning the access level of the
user). Additional RADIUS servers can be configured as backup servers for user authentication.
This section outlines how to configure a RADIUS server to be used for user authentication on your
AnywhereUSB Plus device.
Example FreeRADIUS configuration
With FreeRADIUS, users are defined in the users file in your FreeRADIUSinstallation. To define users:
1. Open the FreeRadius user file in a text editor. For example:
$ sudo gedit /etc/freeradius/3.0/users
2. Add users to the file using the following format:
user1 Cleartext-Password := "user1"
Unix-FTP-Group-Names := "admin"
user2 Cleartext-Password := "user2"
Unix-FTP-Group-Names := "serial"
The Unix-FTP-Group-Names attribute is optional. If used, the value must correspond to
authentication groups configured on your AnywhereUSB Plus. Alternatively, if the user is also
configured as a local user on the AnywhereUSB Plus device and the RADIUS server
authenticates the user but does not return any groups, the local configuration determines the
list of groups. See Authentication groups for more information about authentication groups.
The Unix-FTP-Group-Names attribute can contain one group or multiple groups in a comma-
separated list.
3. Save and close the file.
4. Verify that your changes did not introduce any syntax errors:
$ sudo freeradius -CX
This should return a message that completes similar to:
...
Configuration appears to be OK
5. Restart the FreeRADIUS server:
$ sudo /etc/init.d/freeradius restart
RADIUS server failover and fallback to local configuration
In addition to the primary RADIUS server, you can also configure your AnywhereUSB Plus device to
use backup RADIUS servers. Backup RADIUS servers are used for authentication requests when the
primary RADIUS server is unavailable.
Falling back to local authentication
With user authentication methods, you can configure your AnywhereUSB Plus device to use multiple
types of authentication. For example, you can configure both RADIUS authentication and local

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Digi AnywhereUSB Plus and is the answer not in the manual?

Digi AnywhereUSB Plus Specifications

General IconGeneral
BrandDigi
ModelAnywhereUSB Plus
CategorySwitch
LanguageEnglish

Related product manuals