ACCESS GATEWAY
System Administration 121
keys must match for communication between the server and the client to continue. The
secret key is a valuable and necessary security measure.
5. Repeat Steps 2 through 4 for the secondary RADIUS authentication server (if used).
Accounting
This category requires input for enabling the RADIUS accounting service, and also requires
the necessary IP addresses, ports and secret keys for the primary and secondary RADIUS
accounting servers. The RADIUS accounting server is responsible for receiving accounting
requests and returning a response to the client indicating that it has received the request.
1. To enable the accounting service for your RADIUS functionality, click on the check box
for
Enable RADIUS Accounting Service.
2.
Enter the primary RADIUS accounting server IP address in the Primary IP field.
3. Enter the accounting port in the Port field for the primary RADIUS accounting server.
This is the port the system uses when communicating accounting records.
4. Enter a secret key in the Secret Key field for the primary RADIUS accounting server.
5. Repeat Steps 1 through 4 for the secondary RADIUS accounting server (if used).
Retransmission Options
This category requires you to define the data retransmission method (failover or round-robin),
the retransmission frequency, and how many retransmissions the system should attempt.
1. Select the Retransmission Method (Failover or Round Robin).
2. Enter a value for the time (in seconds) in the Retransmission Frequency field. This
value determines how much time elapses between transmission attempts.
3. Enter a numeric value in the Retransmission Attempts (per server) field to define how
many times the system attempts to transmit the data.
4. Click on the Add button to add this RADIUS Service Profile.
5. When you have completed the definition of your RADIUS Service Profile, you can return
to the previous screen (Realm-Based Routing Settings) by clicking on the
Back to Main
Realm-Based Routing Settings page
link.
The RADIUS Service Profile you just created is added to the list.
The Access Gateway and the RADIUS servers must use the same secret key.