Adding users through radius – Nortel Networks NN46120-104 User Manual

Page 85

Advertising
background image

Adding Users through RADIUS

85

2:

admin

3:

oper

>> Groups# apply

--End--

Adding Users through RADIUS

The RADIUS system administrator can add VPN Gateway administrator
users to the RADIUS configuration without being an administrator of the
NVG, because the users do not need to be configured locally on the NVG.
By assigning suitable administrator groups to these users in RADIUS, the
users can be given the desired access rights to the CLI/BBI.

When the user logs in to the CLI/BBI and is successfully authenticated, the
RADIUS server returns the groups to which the user belongs. The groups
are compared to the fixed administrator groups on the VPN Gateway, that
is,

tunnelguard

,

admin

,

oper

and

certadmin

. If a match is found, the

logged on user is given the administration rights pertaining to matching
group(s). Otherwise, the user is denied access.

See the

/cfg/sys/adm/auth/group

command in the User’s Guide.

Nortel VPN Gateway

User Guide

NN46120-104

02.01

Standard

14 April 2008

Copyright © 2007-2008 Nortel Networks

.

Advertising