Netgear GS724Tv4 Software Administration Manual - Page 179

RADIUS Configuration

Page 179 highlights

GS716Tv3, GS724Tv4, and GS748Tv5 Smart Switches RADIUS Configuration RADIUS servers provide additional security for networks. The RADIUS server maintains a user database, which contains per-user authentication information. The switch passes information to the configured RADIUS server, which can authenticate a user name and password before authorizing use of the network. RADIUS servers provide a centralized authentication method for: • Web access • Port access control (802.1X) The RADIUS menu contains links to the features described in the following sections. • Global Configuration • RADIUS Server Configuration • Accounting Server Configuration Global Configuration Use the Global Configuration screen to add information about one or more RADIUS servers on the network. Consideration to maximum delay time should be given when configuring RADIUS maximum retransmit and RADIUS time-out. If multiple RADIUS servers are configured, the maximum retransmit value on each will run out before the next server is attempted. A retransmit will not occur until the configured time-out value on that server has passed without a response from the RADIUS server. Therefore, the maximum delay in receiving a response from the RADIUS application equals the product of retransmit × time-out for all configured servers. If the RADIUS request was generated by a user login attempt, all user interfaces will be blocked until the RADIUS application returns a response.  To configure global RADIUS server settings: 1. Select Security > Management Security > RADIUS > Global Configuration. The Current Server IP Address field is blank if no servers are configured (see RADIUS Server Configuration on page 180). The switch supports up to three configured RADIUS servers. If more than one RADIUS servers are configured, the current server is the server configured as the primary server. If no servers are configured as the primary server, the current server is the most recently added RADIUS server. 2. In the Max Number of Retransmits field, specify the value of the maximum number of times a request packet is retransmitted to the RADIUS server. 3. In the Timeout Duration field, specify the time-out value, in seconds, for request retransmissions. 4. From the Accounting Mode list, select whether the RADIUS accounting mode is enabled or disabled on the current server. 5. Click the Apply button. Managing Device Security 179

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290

Managing Device Security
179
GS716Tv3, GS724Tv4, and GS748Tv5 Smart Switches
RADIUS Configuration
RADIUS servers provide additional security for networks. The RADIUS server maintains a
user database, which contains per-user authentication information. The switch passes
information to the configured RADIUS server, which can authenticate a user name and
password before authorizing use of the network. RADIUS servers provide a centralized
authentication method for:
Web access
Port access control (802.1X)
The RADIUS menu contains links to the features described in the following sections.
Global Configuration
RADIUS Server Configuration
Accounting Server Configuration
Global Configuration
Use the Global Configuration screen to add information about one or more RADIUS servers
on the network.
Consideration to maximum delay time should be given when configuring RADIUS maximum
retransmit and RADIUS time-out. If multiple RADIUS servers are configured, the maximum
retransmit value on each will run out before the next server is attempted. A retransmit will not
occur until the configured time-out value on that server has passed without a response from
the RADIUS server. Therefore, the maximum delay in receiving a response from the RADIUS
application equals the product of retransmit × time-out for all configured servers. If the
RADIUS request was generated by a user login attempt, all user interfaces will be blocked
until the RADIUS application returns a response.
To configure global RADIUS server settings:
1.
Select
Security
>
Management Security
>
RADIUS
>
Global Configuration.
The Current Server IP Address field is blank if no servers are configured (see
RADIUS
Server Configuration
on page 180). The switch supports up to three configured RADIUS
servers. If more than one RADIUS servers are configured, the current server is the server
configured as the primary server. If no servers are configured as the primary server, the
current server is the most recently added RADIUS server.
2.
In the Max Number of Retransmits field, specify the value of the maximum number of times
a request packet is retransmitted to the RADIUS server.
3.
In the Timeout Duration field, specify the time-out value, in seconds, for request
retransmissions.
4.
From the Accounting Mode list, select whether the RADIUS accounting mode is enabled or
disabled on the current server.
5.
Click the
Apply
button.