D-Link DWS-3024L User Manual - Page 207

FreeRADIUS Server Configuration Example, Configuring RADIUS Clients

Page 207 highlights

Configuring the External RADIUS Server FreeRADIUS Server Configuration Example FreeRADIUS is an open source RADIUS server that you can download free from http://www.freeradius.org. The example in this section describes the files you need to configure in order to authenticate the D-Link Unified Switch and the D-Link Access Point with the RADIUS server and to configure the Valid AP settings in the RADIUS database. Configuring RADIUS Clients If you require the D-Link Unified Switch or D-Link Access Points to authenticate themselves with the RADIUS server, you must configure client entries for the devices in the RADIUS server's etc/raddb/clients.conf file. The entry contains the IP address of the client, the shared secret, and a nickname (or DNS name) for the device. The following entry in the clients.conf file is for a switch with the following information: • IP address: 192.168.30.249 • Subnet mask: 255.255.255.0 • Shared secret: wireless • DNS name: wireless-sw1 The following code shows the format of the client entry in the clients.conf file: client 192.168.30.249/24 { secret = wireless shortname = wireless-sw1 } Creating and Including an Attribute Dictionary You configure attributes in an attribute dictionary so that you can assign the attributes and values to an access point when you configure it in the Valid AP database on the RADIUS server. For example, to assign a location to an access point, the attribute you define has the following format: ATTRIBUTE D-Link-Wireless-AP-Location 101 string D-Link The fields in the attribute are as follows: • Attribute-type of entry • D-Link-Wireless-AP-Location-name of the attribute • 101-ID number assigned to the attribute; you must use this number when you configure the location attribute • string-type of data for the attribute • D-Link-vendor-specific name for the attribute The following VALUE field defines one of the values you can assign to an AP for the AP Mode. VALUE D-Link-Wireless-AP-Mode WS-Managed 1 The VALUE fields are as follows: • VALUE-type of entry FreeRADIUS Server Configuration Example 207

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268

FreeRADIUS Server Configuration Example
207
Configuring the External RADIUS Server
FreeRADIUS Server Configuration Example
FreeRADIUS is an open source RADIUS server that you can download free from
. The example in this section describes the files you need to
configure in order to authenticate the D-Link Unified Switch and the D-Link Access Point
with the RADIUS server and to configure the Valid AP settings in the RADIUS database.
Configuring RADIUS Clients
If you require the D-Link Unified Switch or D-Link Access Points to authenticate themselves
with the RADIUS server, you must configure client entries for the devices in the RADIUS
server’s
etc/raddb/clients.conf
file.
The entry contains the IP address of the client, the shared secret, and a nickname (or DNS
name) for the device.
The following entry in the
clients.conf
file is for a switch with the following information:
IP address: 192.168.30.249
Subnet mask: 255.255.255.0
Shared secret: wireless
DNS name: wireless-sw1
The following code shows the format of the client entry in the
clients.conf
file:
client 192.168.30.249/24 {
secret
= wireless
shortname
= wireless-sw1
}
Creating and Including an Attribute Dictionary
You configure attributes in an attribute dictionary so that you can assign the attributes and
values to an access point when you configure it in the Valid AP database on the RADIUS
server. For example, to assign a location to an access point, the attribute you define has the
following format:
ATTRIBUTE
D-Link-Wireless-AP-Location
101
string D-Link
The fields in the attribute are as follows:
Attribute—type of entry
D-Link-Wireless-AP-Location—name of the attribute
101—ID number assigned to the attribute; you must use this number when you configure
the location attribute
string—type of data for the attribute
D-Link—vendor-specific name for the attribute
The following VALUE field defines one of the values you can assign to an AP for the AP
Mode.
VALUE D-Link-Wireless-AP-Mode
WS-Managed
1
The VALUE fields are as follows:
VALUE—type of entry