RADIUS Authentication
Up to two RADIUS authentication servers can be configured and managed on the RADIUS Configuration tab. A toolbar in the top-left corner of the configured servers is used to add or delete servers. Hover your mouse over the right end of a row containing a selected server to edit or delete that server. When the first authentication server is specified, a priority table appears above the configured servers, along with a drop-down menu used to specify the encryption protocol used.
Configuring RADIUS Authentication
1. Go to Administration > Account Management: Authentication to display the Authentication page.
2. Select the RADIUS tab. A table shows the configured RADIUS Servers.
3. Click the Add button in the toolbar. A New RADIUS Server window is displayed.
4. Specify a host, identified using:
– An IPv4 address
– A host name
5. Specify the UDP port used for authentication.
6. Specify the shared secret key used to encrypt traffic to and from the server. Toggle the Enable checkbox to make this field editable.
7. Specify the timeout period in seconds. Up to 30 seconds can be entered.
8. When finished, click Save. To discard any entries, click x in the upper-right corner of the window.
Setting the RADIUS Encryption Protocol
You can change the encryption protocol used by the RADIUS servers (default PAP). Select from the following list of protocols:
◼ CHAP
◼ MSCHAP1
◼ MSCHAP2
◼ PAP
Setting RADIUS Server Priority
When the first authentication server is specified, a Priority table appears above the configured servers.
Setting the Sequence of RADIUS Authentication Servers
1. Go to Administration > Account Management: Authentication to display the Authentication page.
2. Select the RADIUS tab.
3. A table shows the authentication servers configured.
4. The priority of each server is shown in column 1, highest (1) to lowest.
5. Use the two icons on the right-side of each table row to change a row’s priority:
– Click ^ to raise an authentication type’s priority.
– Click v to lower an authentication type’s priority.