More services
BAT54-Rail/F..
Release
7.54
06/08
12.9
RADIUS
509
D Name
In this table, each RADIUS server needs a unique name. The name
'DEFAULT' is reserved for all WLAN networks that use an authentication
process in line with IEEE 802.1x and that have not specified their own
RADIUS server.
By using the name defined in the 'Key 1/passphrase' field, each WLAN
network using authentication in line with IEEE 802.1x can be assigned its
own RADIUS server.
D Server IP address
Specify here the IP address of your RADIUS server from which users are
managed centrally.
D Server port
Specify here the port used for communication to your RADIUS server.
D Key (shared secret)
Specify here the key to be used for coding data. The key must also be
configured on the RADIUS server.
D Backup server
Name of the backup server from the list of RADIUS servers configured
so far.
Note: The generic values for retry and timeout must also be configured (see
’Configuration of RADIUS as authenticator or NAS’ → page 502).
WLAN clients must be entered as follows on the RADIUS server:
The user name is the MAC address in the format AABBCC-DDEEFF.
The password for all users is identical to the key (shared secret) for
the RADIUS server.
12.9.3 Configuring RADIUS as server
In addition to its function as RADIUS authenticator or NAS, an BAT access
point can also operate as a RADIUS server. When in this mode, information
in the device on users authorized to register is made available to other ac-
cess points in Authenticator mode.