Switch Security
6-58
radio button) or if no authentication is used for credential verification (by selecting the No
Authentication radio button).
4. Enter a NAS ID for the NAS port.
The profile database on the Radius server consists of user profiles for each physical network access
server (NAS) port connected. Every profile contains a profile matched to a username representing a
physical port. When the switch authorizes users, it queries the user profile database using a
username representative of the physical NAS port making the connection.
5. If the Radius Server radio button was selected, the following server information displays when the
Radius tab is selected:
6. Select an existing Radius Server and click the Edit button to modify its designation as a primary or
secondary Radius Server, IP address, port, NAS ID and shared secret password.
Motorola recommends only modifying an existing Radius Server when its current configuration is no
longer viable for providing user authentication. Otherwise, define a new Radius Server.
7. Select an existing server and click the Delete button to remove it from list of available Radius Servers
for the remote VPN connection. Only delete a server if its configuration does not provide a valid
authentication medium.
8. If you require a new Radius Server be configured, click the Add button.
Set this server’s designation as a primary or secondary Radius Server (using the checkboxes), define
the server IP address, port and shared secret password. Click OK when completed to save the
changes.
9. If the User Table checkbox was selected from within the Configuration field, select the User Table
tab to review the User Name and Passwords defined for use.
Type Displays whether this target server is a Primary or Secondary Radius Server.
Server IP Address Displays the IP address of the server acting as the data source for the Radius
server.
Port Displays the TCP/IP port number for the server acting as a data source for the
Radius. The default port is 1812.
Shared Secret Displays a shared secret used for each host or subnet authenticating against
the Radius server. The shared secret can be up to 7 characters in length.