Dell PowerConnect W Clearpass 100 Software ArubaOS Integration Guide - Page 21

Modify the AAA Profile, Modify AAA profile RADIUS settings

Page 21 highlights

Amigopod and ArubaOS Integration Application Note Modify the AAA Profile The AAA profiles define how users are authenticated. The AAA profile determines the user role for unauthenticated clients (initial role) and the user role to be applied after successful authentication (default role) based on the authentication type. The AAA profile also defines the server group that is used for RADIUS accounting and an RFC3576 server if present. Begin with the existing AAA profile defined as part of the baseline for guest access in the campus VRD resource. Then modify the guestnet AAA profile as follows:  The initial role remains as the guest-logon role, but it is modified in the next step to enable the new captive portal profile.  (Optionally) Enable RADIUS interim accounting to receive incremental updates on guest access usage.  Enable the RADIUS accounting server group to point to the Amigopod.  Enable the RFC3576 server to point to the Amigopod. Modify AAA Profile RADIUS Settings aaa profile "guestnet" initial-role guest-logon radius-interim-accounting radius-accounting "Guest-Amigopod" Figure 10 Modify AAA profile RADIUS settings Next enable RFC3576 support for the server group. Aruba Networks, Inc. ArubaOS Configuration | 21

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51

Aruba Networks, Inc.
ArubaOS Configuration
|
21
Amigopod and ArubaOS Integration
Application Note
Modify the AAA Profile
The AAA profiles define how users are authenticated. The AAA profile determines the user role for
unauthenticated clients (initial role) and the user role to be applied after successful authentication
(default role) based on the authentication type. The AAA profile also defines the server group that is
used for RADIUS accounting and an RFC3576 server if present.
Begin with the existing AAA profile defined as part of the baseline for guest access in the campus VRD
resource. Then modify the guestnet AAA profile as follows:
The initial role remains as the guest-logon role, but it is modified in the next step to enable the
new captive portal profile.
(Optionally) Enable RADIUS interim accounting to receive incremental updates on guest access
usage.
Enable the RADIUS accounting server group to point to the Amigopod.
Enable the RFC3576 server to point to the Amigopod.
Modify AAA Profile RADIUS Settings
aaa profile "guestnet"
initial-role guest-logon
radius-interim-accounting
radius-accounting "Guest-Amigopod"
Figure 10
Modify AAA profile RADIUS settings
Next enable RFC3576 support for the server group.