Configuring a RADIUS Server - Metasys - LIT-1201528 - General System Information - Metasys System - 10.1

Security Administrator System Technical Bulletin

Brand
Metasys
Product name
Metasys System
Document type
Technical Bulletin
Document number
LIT-1201528
Version
10.1
Revision date
2020-01-21
Language
English

To configure a RADIUS account, use the Security Administrator system.

  1. Using Metasys Launcher, start and log in to the SMP with any Metasys system administrator account.
  2. On the SMP UI screen, select Tools > Administrator. The Security Administrator window appears.
  3. In the Security Administration menu, click Server Configuration> RADIUS. The Configure RADIUS screen appears.

    Figure 1. RADIUS Configure Option

    Figure 2. RADIUS Configuration Screen

  4. Select the Enable RADIUS Authentication check box to enable the fields on the Configure RADIUS screen.
  5. Fill in the fields of the Configure RADIUS screen using the information in the following table.
  6. Click Save.
    Note: At any time, RADIUS may be disabled by clearing the Enable Radius Authentication check box and applying or saving the configuration. While RADIUS is disabled, only local users can authenticate. Login errors display when a user attempts to log in with a RADIUS account.

    Table 1. RADIUS Configuration Fields

    Field

    Value

    Description

    Enable RADIUS Authentication

    Checked or unchecked

    Check box to configure and enable RADIUS server authentication. The check box defaults to unchecked. If it is not checked, all fields in the RADIUS Configuration screen are not editable.

    RADIUS Server

    IPv4 address or a DNS name

    IPv4 address of the RADIUS server.

    RADIUS Server Port

    0 - 65535

    Port on the RADIUS server to which Metasys directs messages.

    RADIUS Client Port

    0 - 65535

    Port on the Metasys server that is used to send requests to and receive responses from the RADIUS server.

    Note: The default port for RADIUS is 1812.

    Shared Secret

    Text string

    A secret that is used to verify the validity of messages sent by the RADIUS server to the client. Knowing the Shared Secret does not grant access to a RADIUS server.

    NAS Identifier

    Text string

    A RADIUS attribute that the client uses to identify itself to a RADIUS server.

    Authentication Mechanism

    MS-CHAPv2

    Mechanism used for server authentication.