Authentication and User Management
14.4 Configuring Authentication Servers
SCALANCE W1750D UI
212 Configuration Manual, 02/2018, C79000-G8976-C451-02
–
for AirGroup CoA—To configure a ClearPass Policy Manager server
used for AirGroup CoA (Change of Authorization), select the check box.
The RADIUS
server is automatically selected:
Enter a name of the server.
Server address Enter the host name or IP address of the server.
Air Group CoA port Enter a port number for sending AirGroup CoA on a port different from
the standard CoA port. The default value is 5999.
Shared key Enter a shared key for communicating with the external RADIUS serv-
4. Click
.
Note
The ClearPass Policy Manager server acts as a RADIUS server and asynchronously
provides the AirGroup parameters for the client device including shared user, role, and
location
To configure a RADIUS server with DRP parameters:
(scalance)(config)# wlan auth-server <profile-name>
(scalance)(Auth Server <profile-name>)# ip <host>
(scalance)(Auth Server <profile-name>)# key <key>
(scalance)(Auth Server <profile-name>)# port <port>
(scalance)(Auth Server <profile-name>)# acctport <port>
(scalance)(Auth Server <profile-name>)# nas-id <NAS-ID>
(scalance)(Auth Server <profile-name>)# nas-ip <NAS-IP-address>
(scalance)(Auth Server <profile-name>)# timeout <seconds>
(scalance)(Auth Server <profile-name>)# retry-count <number>
(scalance)(Auth Server <profile-name>)# rfc3576
(scalance)(Auth Server <profile-name>)# deadtime <minutes>
(scalance)(Auth Server <profile-name>)# drp-ip <IP-address> <mask> vlan <vlan>
gateway <gateway-IP-address)
(scalance)(Auth Server <profile-name>)# end (scalance)# commit apply
To enable RadSec:
(scalance)(config)# wlan auth-server <profile-name>
(scalance)(Auth Server "name")# ip <host>
(scalance)(Auth Server "name")# radsec [port <port>]