
Configuring the Nortel Networks Remote Access Concentrators and the DMS-10 for Remote Access.March 31, 1999 22
Make sure that the secret is inputted exactly as it is in the RADIUS server and note that it
is case sensitive.
FIGURE 12. RADIUS Security Parameters
Once the RADIUS server is set up the other services will need to have their security ser-
vices turned on. The other services that can be controlled with RADIUS security are:
• PPP and MP authentication
• VCLI authentication
• CLI authentication
Before setting up any services that use security, the RADIUS server should be setup with
accounts for the services that are being tested. It is best to first get RADIUS services
Note
:
RADIUS security will not take affect till the RAC has been
rebooted.
Security Parameters
enable_security:*Y security_broadcast: Y
pref_secure1_host:*47.39.240.99 pref_secure2_host: 0.0.0.0
network_turnaround: 2 loose_source_route: Y
acp_key: "<unset>" password:*"<set>"
lock_enable: Y passwd_limit: 3
chap_auth_name: "chap" max_chap_chall_int: 0
auth_protocol:*radius enable_radius_acct: N
radius_acct1_host:*47.39.240.99 radius_acct2_host: 0.0.0.0
radius_auth1_port: 1645 radius_auth2_port: 1645
radius_auth1_secret:*"<set>" radius_auth2_secret: "<unset>"
radius_acct1_secret:*"<set>" radius_acct2_secret: "<unset>"
radius_auth_timeout: 4 radius_acct_timeout: 4
radius_retries: 10 radius_acct_level: standard
radius_port_encoding: device
radius_user_prompt: "Annex%susername%c"
radius_pass_prompt: "Annex%spassword%c"
compatibility_mode: BayNetworks
radius_acct1_port: 1646 radius_acct2_port: 1646
Enable Security turns on all security
for the RAC. It must be set for security
This is the IP address for the RADIUS security server
This parameter sets the secuity to RADIUS security.
Sets the number of password attempts
Enter the shared secret for RAIUS accounting and
Security. This will not be displayed.
The default is ACP which is propriatary Bay.
This is the IP address for the RADIUS accounting server.
Note: The second RADIUS server is set up the same as the first.
Comentários a estes Manuais