2-4
Getting Started
Before You Begin
5. Create the Access Profiles, to set the VLAN, QoS, rate-limits (bandwidth)
attributes, and the network resources that are available, to users in an
Access Policy Group. (See page 3-23)
6. Create an Access Policy Group, with rules containing the Location, Time,
System, and Access Profile that is applied to users when they login. (See
page 3-32)
7. Assign Users to the appropriate Access Policy Group. (See page 3-38)
8. Deploy the configuration policies to the IDM Agent on the RADIUS server.
(See page 3-42)
IDM Usage Strategies
You can use IDM to simply monitor user activity on the network, or to apply
user authentication rules to improve network security and performance. The
following table identifies the IDM configuration for various deployment and
usage strategies for IDM.
Table 2-1: IDM Deployment and Usage Strategies
Authenticate Authorize Strategy Description
VLAN QoS Rate-
Limit
Network
Resources
Monitor and report user activity.
x
Enhance normal RADIUS authentication with
Location, Time, and System rules
xx
Provide rudimentary VLAN segregation
(Unknown Users, Guests, Visitors, Contractors)
xx
Provide complete VLAN placement for all
Users
xxx
Provide QoS and Rate-limits per User
xxxxx
VLAN, QoS, and Rate-limit attributes, and
accessibility of defined Network Resources for
all users, based on Location, Time, and System