ZyXEL ZyWALL ATP700 User Guide - Page 714
Object, ZyWALL ATP Series User's Guide, Table 295, Configuration > Object > AAA
View all ZyXEL ZyWALL ATP700 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 714 highlights
Chapter 34 Object Table 295 Configuration > Object > AAA Server > RADIUS > Add (continued) LABEL DESCRIPTION Key Enter a password (up to 15 alphanumeric characters) as the key to be shared between the external authentication server and the Zyxel Device. Change of Authorization The key is not sent over the network. This key must be the same on the external authentication server and the Zyxel Device. The external RADIUS server can change its authentication policy and send CoA (Change of Authorization) or RADIUS Disconnect messages in order to terminate the subscriber's service. Server Address Accounting Port Backup Server Address Backup Accounting Port Key Select this option to allow the Zyxel Device to disconnect wireless clients based on the information (such as client's user name and MAC address) specified in CoA or RADIUS Disconnect messages sent by the RADIUS server. Enter the IP address or Fully-Qualified Domain Name (FQDN) of the RADIUS accounting server. Specify the port number on the RADIUS server to which the Zyxel Device sends accounting information. Enter a number between 1 and 65535. If the RADIUS server has a backup accounting server, enter its address here. Specify the port number on the RADIUS server to which the Zyxel Device sends accounting information. Enter a number between 1 and 65535. Enter a password (up to 15 alphanumeric characters) as the key to be shared between the external authentication server and the Zyxel Device. Maximum Retry Count The key is not sent over the network. This key must be the same on the external authentication server and the Zyxel Device. At times the Zyxel Device may not be able to use the primary RADIUS accounting server. Specify the number of times the Zyxel Device should reattempt to use the primary RADIUS server before attempting to use the secondary RADIUS server. This also sets how many times the Zyxel Device will attempt to use the secondary RADIUS server. For example, you set this field to 3. If the Zyxel Device does not get a response from the primary RADIUS server, it tries again up to three times. If there is no response, the Zyxel Device tries the secondary RADIUS server up to three times. Enable Accounting Interim Update Interim Interval Timeout If there is also no response from the secondary RADIUS server, the Zyxel Device stops attempting to authenticate the subscriber. The subscriber will see a message that says the RADIUS server was not found. This field is configurable only after you configure a RADIUS accounting server address. Select this to have the Zyxel Device send subscriber status updates to the RADIUS server at the interval you specify. Specify the time interval for how often the Zyxel Device is to send a subscriber status update to the RADIUS server. Specify the timeout period (between 1 and 300 seconds) before the Zyxel Device disconnects from the RADIUS server. In this case, user authentication fails. NAS IP Address NAS Identifier Case-sensitive User Names Search timeout occurs when either the user information is not in the RADIUS server or the RADIUS server is down. Type the IP address of the NAS (Network Access Server). If the RADIUS server requires the Zyxel Device to provide the Network Access Server identifier attribute with a specific value, enter it here. Select this if you want configure your username as case-sensitive. ZyWALL ATP Series User's Guide 714