Configurethedeviceusing theweb interface System Configuration
Digi Connect Family and ConnectPort TSFamily
104
In such conditions, the round-trip timing (of the request/reply) skewsthe time sample adjustment to
determine the time valueto use for the device. Therefore configuring an aggressively small (short)
threshold value may cause the device to adjust itstimefrequently and unnecessarily, such that the
time value “jumps” forward or backward as a consequence of asymmetric packet delays.
Configure RADIUS authentication for a ConnectPort TS device
You can configure a ConnectPort TSto use RADIUS(Remote Authentication Dial-In User Service)
servers to authenticate and maintain user profileson dial-in users.
When RADIUS authentication is enabled, the user name and password used to log into the
ConnectPort TSissent to the RADIUS server for authentication. If the user login has been configured
on the RADIUS server, then the user is allowed to access the ConnectPort TS web interface.
To configure RADIUS authentication:
1. Determine whether the RADIUSserver isconfigured to authenticate users. See RADIUSserver
reference.
2. Create the required RADIUSroles locally on the ConnectPort TS. See Create RADIUSserver
roles.
3. Enable RADIUSauthentication for a device, and then configure the Digi device to use oneor
more RADIUSserversto authenticate user profilesSee Enable RADIUSauthentication.
RADIUSserver reference
Note Thisinformation appliesonly to the ConnectPort TS.
Before you can use the RADIUSserver to authenticate users attempting to access a ConnectPort TS
device, your system administrator must configure the RADIUS server with thefollowing:
n
Adefault set of attributes (or roles):
l
role-admin
l
role-outbound
l
role-nasprompt
n
Thedesired permissionsassigned to each attribute. The permissionsdetermine the actionsthe
user role is allowed to perform in the ConnectPort TSweb interface.
Note The permissionsassigned to theattributes on the RADIUS server must exactly match the
permissionsassigned to the user on the device. See Create RADIUSserver roles.
When the RADIUS server is configured and RADIUS authentication isenabled on the ConnectPort TS,
then when user logsinto the device using one of the default attributes, the device sends the user login
information (user name, password, and attribute) to theRADIUS server. The RADIUS server logs into
the device using the login information. The user is then ableto perform actions in theConnectPort TS
web interface.
Create RADIUSserver roles
To ensure that RADIUS authentication worksas expected, you must create users locally on the
ConnectPort TSfor the roles that match the default set of attributes configured on the RADIUS server.
Theseare the user namesand passwordsthat must be used to log in to the ConnectPort TSweb
interface.