beautypg.com

Brocade Mobility Access Point System Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 518

background image

508

Brocade Mobility Access Point System Reference Guide

53-1003100-01

7

14. Select the Settings tab.

FIGURE 12

AAA-Policy - Settings screen

Retry Timeout Factor

Specify the interval, in seconds, between two successive re-transmission attempts of request
packets. Specify a value from 50 - 200 seconds. The default is 100 seconds.

DSCP

Displays the DSCP value as a 6-bit parameter in the header of every IP packet used for packet
classification. The valid range is from 0 - 63 with a default value of 34.

NAI Routing Enable

Displays NAI routing status. AAA servers identify clients using the NAI. The NAI is a character string
in the format of an E-mail address as either user or user@ but it need not be a valid E-mail address
or a fully qualified domain name. NAI can be used either in a specific or generic form. The specific
form, which must contain the user portion and may contain the @ portion, identifies a single user.
Each user still needs a unique security association, but these associations can be stored on a AAA
server. The original purpose of NAI was to support roaming between dialup ISPs. Using NAI, each
ISP need not have all the accounts for all of its roaming partners in a single RADIUS database.
RADIUS servers can proxy requests to remote servers for each.

Realm

Enter the realm name. The name cannot exceed 64 characters. When the access point’s RADIUS
server receives a request for a user name, the server references a table of user names. If the user
name is known, the server proxies the request to the RADIUS server.

Realm Type

Specify the realm as either Prefix or Suffix.

Strip Realm

Select this option to remove information from the packet when NAI routing is enabled.