beautypg.com

Allied Telesis AlliedWare Plus Operating System Version 5.4.4C (x310-26FT,x310-26FP,x310-50FT,x310-50FP) User Manual

Page 1308

background image

Local RADIUS Server Introduction and Configuration

Software Reference for x310 Series Switches

50.6

AlliedWare Plus

TM

Operating System - Version 5.4.4C

C613-50046-01 REV A

Since there is not an explicit RADIUS attribute for the users with the security privilege level
7, use “Cisco-AVPair” to specify this user privilege. Also, it is very important that you
specify the attribute Service-Type NAS-Prompt-User as well, otherwise the
following error is generated when a user allocated to this group tries to login into the
AlliedWare Plus switch:

The RADIUS Server attribute NAS-Prompt-User is used for non-privileged level users as
per the RADIUS RFC. This attribute is used for users with security privilege levels of 1 to 6.

Configuring these RADIUS Server attributes is achieved using Local RADIUS Server
commands:

19:09:14 awplus login[16974]: Invalid user name "tests" in

main:698. Abort.

awplus#

configure terminal

awplus(config)#

radius-server local

awplus(config-radsrv)#

group users

awplus(config-radsrv-group)#

attribute Service-Type NAS-
Prompt_User