beautypg.com

Allied Telesis AT-S62 User Manual

Page 324

background image

Chapter 28: RADIUS and TACACS+ Authentication Protocols

Section VII: Management Security

324

Global Server Timeout
This parameter specifies the maximum amount of time the
switch waits for a response from a RADIUS server before
assuming the server will not respond. If the timeout expires
and the server has not responded, the switch queries the next
RADIUS server in the list. If there aren’t any more servers, than
the switch will default to the standard Manager and Operator
accounts. The default is 30 seconds. The range is 1 to 30
seconds.

IP Address, Port #, and Encryption Key
Use these fields to specify the IP address, UDP port number,
and encryption key of each RADIUS server. You can specify up
to a maximum of three servers. You can leave the encryption
field blank if you entered the server’s key in the Global Secret
field.

c. After you have finished configuring the parameters, click Apply.

d. To enable the authentication feature on the switch, click the

Enable Server-based Authentication check box. A check in the box
indicates that this feature is enabled. No check indicate the
feature is disabled. The default is disabled.

Note

The Enable Server-based Authentication check box applies only
when you are using the RADIUS client software to support new
manager accounts. If you will be using RADIUS for 802.1x port-based
access control but not for new manager accounts, you should leave
the check box empty.

e. To permanently save the changes, select the Save Config menu

selection.