
Configuring RADIUS
E-8
308640-15.1 Rev 00
Configuring the ACE/Server
After you configure the RADIUS client and server attributes on the router, you
must configure the ACE/Server to allow it to communicate with the RADIUS
client.
Because the ACE/Server does not support vendor-specific attributes, Nortel
Networks uses the standard attribute Port_Limit to configure the Audit level and
User Privilege level.
To configure the Audit and User Privilege levels, set the Port_Limit attribute on
the ACE/Server to one of the following numbers:
• Manager: 2
• User: 4
• Operator: 8
The BayRS RADIUS client is configured in the ACE/Server database as a
Communication Server type of client.
For complete information about configuring the ACE/Server, see the ACE/Server
documentation.
Establishing User Authentication
To begin the user authentication process, initiate a login session with the RADIUS
client using one of the following router management applications: Telnet, the
Technician Interface, FTP, or HTTP.
Note:
If you attempt to log in to the RADIUS client using FTP, the Technician
Interface will immediately reject you after you enter a user name and token
code. The workaround is to get a valid SecurID PIN number by logging into
the RADIUS client using Telnet, the Technician Interface, or HTTP. Then log
into FTP again and enter your new PIN to access the RADIUS client for
authentication.
Comentários a estes Manuais