Dell EqualLogic PS6210XS EqualLogic Group Manager Administrator s Guide PS Ser - Page 62

Prerequisites for, RADIUS Servers, Configuring

Page 62 highlights

Attribute Admin-Email (Optional) Email address of the administrator. Admin-Phone (Optional) Phone number for the administrator. Admin-Mobile (Optional) Mobile phone number for the administrator. Admin-Poll-Interval Frequency, in seconds, the GUI polls the group configuration data. The default is 30 (seconds). Field VSA syntax VSA vendor ID VSA number VSA syntax VSA vendor ID VSA number VSA syntax VSA vendor ID VSA number VSA syntax VSA vendor ID VSA number VSA syntax Required Value String (3 to 247 ASCII characters) 12740 2 String (3 to 247 ASCII characters) 12740 3 String (3 to 247 ASCII characters) 12740 4 String (3 to 247 ASCII characters) 12740 5 Integer (up to 6 numerals) Prerequisites for Configuring RADIUS Servers Before you use a RADIUS server to authenticate administration accounts (or CHAP accounts for iSCSI access), you must install the server and set up the accounts: 1. Install and configure the RADIUS authentication server. For example, to add the group as a RADIUS client on a Microsoft Windows server, you must specify the following items: • Name (also called Friendly Name) for the client. Dell recommends using the group name. • Group IP address (also called Client address) or dedicated management network IP address. • Vendor Name attribute. Select RADIUS Standard. • Password (also called Shared Secret) of up to 63 ASCII characters. This password should also be entered in Group Manager when you configure the group to use the RADIUS authentication server. NOTE: Though using a password is not required, Dell recommends that you use one for increased security. 2. For iSCSI CHAP (Challenge Handshake Authentication Protocol) accounts, add each configured network interface on all the group members as a RADIUS client. Specify the network interface IP address and, optionally, a password (or secret), up to 63 ASCII characters. If you specify a password, enter this password when you configure the group to use the RADIUS authentication server. Dell recommends that you use a password for increased security. 3. For administration accounts, set up the attributes that allow the server to authorize accounts as group administrator, pool administrator, or read-only accounts. 4. Set up the accounts. You can set up accounts on the RADIUS server or a different resource, such as Active Directory. The RADIUS server verifies login credentials (account name and password) that the user supplies against these accounts. The RADIUS server must be accessible to all the group members. Configure a RADIUS Server When configuring a RADIUS server in a pure IPv6 environment, you must: • Specify, on the RADIUS server, a RADIUS client for every IPv6 IP as an entry for the Microsoft Windows server. • Enable access for the RADIUS user. To configure the RADIUS server: 62 About Group-Level Security

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355

Attribute
Field
Required Value
VSA syntax
String (3 to 247 ASCII characters)
Admin-Email
(Optional) Email address of the administrator.
VSA vendor ID
VSA number
VSA syntax
12740
2
String (3 to 247 ASCII characters)
Admin-Phone
(Optional) Phone number for the administrator.
VSA vendor ID
VSA number
VSA syntax
12740
3
String (3 to 247 ASCII characters)
Admin-Mobile
(Optional) Mobile phone number for the administrator.
VSA vendor ID
VSA number
VSA syntax
12740
4
String (3 to 247 ASCII characters)
Admin-Poll-Interval
Frequency, in seconds, the GUI polls the group
configuration
data. The default is 30 (seconds).
VSA vendor ID
VSA number
VSA syntax
12740
5
Integer (up to 6 numerals)
Prerequisites for
Configuring
RADIUS Servers
Before you use a RADIUS server to authenticate administration accounts (or CHAP accounts for iSCSI access), you must install the
server and set up the accounts:
1.
Install and
configure
the RADIUS authentication server.
For example, to add the group as a RADIUS client on a Microsoft Windows server, you must specify the following items:
Name (also called Friendly Name) for the client. Dell recommends using the group name.
Group IP address (also called Client address) or dedicated management network IP address.
Vendor Name attribute. Select RADIUS Standard.
Password (also called Shared Secret) of up to 63 ASCII characters. This password should also be entered in Group Manager
when you
configure
the group to use the RADIUS authentication server.
NOTE: Though using a password is not required, Dell recommends that you use one for increased security.
2.
For iSCSI CHAP (Challenge Handshake Authentication Protocol) accounts, add each
configured
network interface on all the
group members as a RADIUS client. Specify the network interface IP address and, optionally, a password (or secret), up to 63
ASCII characters. If you specify a password, enter this password when you
configure
the group to use the RADIUS
authentication server. Dell recommends that you use a password for increased security.
3.
For administration accounts, set up the attributes that allow the server to authorize accounts as group administrator, pool
administrator, or read-only accounts.
4.
Set up the accounts. You can set up accounts on the RADIUS server or a
different
resource, such as Active Directory. The
RADIUS server
verifies
login credentials (account name and password) that the user supplies against these accounts.
The RADIUS server must be accessible to all the group members.
Configure
a RADIUS Server
When
configuring
a RADIUS server in a pure IPv6 environment, you must:
Specify, on the RADIUS server, a RADIUS client for every IPv6 IP as an entry for the Microsoft Windows server.
Enable access for the RADIUS user.
To
configure
the RADIUS server:
62
About Group-Level Security