beautypg.com

Brocade Mobility RFS Controller CLI Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 1072

background image

Brocade Mobility RFS Controller CLI Reference Guide

1063

53-1003098-01

17

A user’s access request is sent to a proxy RADIUS server if it cannot be authenticated by the local
RADIUS resources. The proxy server checks the information in the user access request and either
accepts or rejects the request. If the proxy server accepts the request, it returns configuration
information specifying the type of connection service required to authenticate the user.

The RADIUS proxy appears to act as a RADIUS server to NAS, whereas the proxy appears to act as a
RADIUS client to the RADIUS server.

When the proxy server receives a request for a user name with a realm, the server references a
table of realms. If the realm is known, the server proxies the request to the RADIUS server.

Supported in the following platforms:

Access Points — Brocade Mobility 650 Access Point, Brocade Mobility 6511 Access Point,
Brocade Mobility 1220 Access Point, Brocade Mobility 71XX Access Point, Brocade
Mobility 1240 Access Point

Wireless Controllers — Brocade Mobility RFS4000, Brocade Mobility RFS6000, Brocade
Mobility RFS7000

Service Platforms — Brocade Mobility RFS9510

Syntax:

proxy [realm|retry-count|retry-delay]

proxy realm server port <1024-65535> secret

[0 |2 |]

proxy retry-count <3-6>

proxy retry-delay <5-10>

Parameters

proxy realm server port <1024-65535> secret

[0 |2 |]

proxy retry-count <3-6>

proxy realm

Configures the realm name

– Specify the realm name. The name should not exceed 50 characters.

server

Configures the proxy server’s IP address. This is the address of server checking the information in the
user access request and either accepting or rejecting the request on behalf of the local RADIUS server.

– Sets the proxy server’s IP address

port <1024-65535>

Configures the proxy server’s port. This is the TCP/IP port number for the server that acts as a data
source for the proxy server.

<1024-65535> – Sets the proxy server’s port from 1024 - 65535 (default port is 1812)

secret [0 |
2 |

Sets the proxy server secret string. The options are:

0 – Sets an UNENCRYPTED password

2 – Sets an ENCRYPTED password

– Sets the proxy server shared secret value

retry-count <3-6>

Sets the proxy server’s retry count. This is the maximum number attempts made by a controllers RDIUS
server to connect to the proxy server.

<3-6> – Sets a value from 3 - 6 (default is 3 counts)