6 radius client – CANOGA PERKINS 9145EMP NID Software Version 3.1 User Manual

Page 46

Advertising
background image

9145EMP NID Software User’s Manual

System Configuration

RADIUS Client

34

4. Customer Maximum of 25 characters.

5. Information Two lines, maximum of 40 characters each.

6. Circuits Two lines, maximum of 25 characters each.

7. Service Code Maximum of 10 characters.

8. Date-in-Service The date when the 9145EMP was placed into service.

9. Date-Out-of-Service The date when the 9145EMP was last taken out of service.

10. Equipment Type Maximum of 10 characters.

11. Equipment Code Maximum of 10 characters.

12. Vendor Maximum of 25 characters.

13. CLEI Common Language Equipment Identification (CLEI) up to 10 characters.

14. Mfg Date An editable date field in the form [mm/dd/yyyy].

3.6 RADIUS Client

RADIUS (Remote Authentication Dial-In User Service) software support is provided for User
Authentication.

RADIUS provides the ability to have user interface accounts to be maintained and authenticated
by a RADIUS server. The RADIUS server also maintains user account information:

AccessFrom Where the account can be used.

AccessLevel The security access level for the user.

Description The account description.

LogoutUser Whether the user can be forcefully logged out.

When a user enters a username and password and RADIUS has been configured, the username
and password is sent to the RADIUS server and is validated there. If valid, then the RADIUS
server sends an accept message along with the above account information and the 9145EMP
RADIUS client allows the user in with this configuration.

The RADIUS server may send a reject message in which case the user is not logged in. The
RADIUS server may also send a challenge message if it has been configured to do so in which
case the user is prompted for additional authentication information at which time the RADIUS
server will then send an accept or reject message.

3.6.1 RADIUS client configuration

Up to two RADIUS servers can be configured. The RADIUS server that is consulted is
determined by the server priority. The server with the lowest priority number is consulted first. If it
does not respond, then the other RADIUS server is consulted (if configured). If both servers are
configured with the same priority then a round-robin access is used; first one RADIUS server will
be consulted and the next request will be sent to the other RADIUS server first. The server
priorities are relative. That is, you could configure one server with priority 10 and the other with
20. The values of the numbers do not matter, just the relative values of the numbers (in this case
10 being less than 20). This is done to allow you to easily change the server priorities without
having to edit both entries. If you had configured the servers with 10 and 20, you could make the

Advertising