Working with controlled APs
Authentication of controlled APs
6-21
Use file authentication list
When this option is selected, the controller retrieves authentication list entries from a
file. This must be an ASCII file with one or more MAC addresses in it. Each address must
be entered on a separate line. For example:
00:03:52:00:00:01
00:03:52:00:00:02
00:03:52:00:00:03
A label affixed to each AP indicates its Ethernet Base MAC Address. This is the address to
specify in the authentication list.
File location
Specify the location of the file to use for authentication of APs using either HTTP or FTP.
For example:
ftp://mydomain.com/auth_list
ftp://username:password@mydomain.com/auth_list
http://mydomain.com/auth_list
Use RADIUS authentication list
When this option is selected, the controller retrieves authentication list entries from a
RADIUS server. List entries must be defined in the RADIUS account for the controller
using the following Colubris-AVPair value string:
managed-ap=MAC_address
Where MAC_address is the Ethernet Base port MAC address of the controlled AP (which
is printed on a sticker affixed to the AP case). Use colons to separate characters in the
address.
For example: 00:20:E0:6B:4B:44.
To define multiple addresses, specify additional entries as needed.
This attribute conforms to RADIUS RFC 2865. You may need to define this attribute on
your RADIUS server if it is not already present as follows:
SMI network management private enterprise code = 8744
Vendor-specific attribute type number = 0
Attribute type = string
RADIUS profile
When the Authentication source is RADIUS, this option specifies the name of the
RADIUS profile to use. There is no default. To configure RADIUS profiles, select
Controller >> Authentication > RADIUS profiles.
RADIUS username
When the Authentication source is RADIUS, specifies the RADIUS username assigned
to the controller.
RADIUS password / Confirm RADIUS password
Specifies the password that corresponds with RADIUS username.