Extreme Networks devices can serve as RADIUS authentication servers
and respond to 802.1X requests from other Extreme Networks RADIUS
authenticators. The Extreme Networks RADIUS server can store user
accounts locally or check user login credentials against user accounts stored
externally on Active Directory or LDAP (lightweight directory access protocol) user
database servers.
This task is part of the network policy configuration workflow. Use this task to configure an AAA server profile.
-
On the Wireless tab, select Add Radius Server
Group.
-
Select EXTREME NETWORKS RADIUS SERVER.
-
Type a RADIUS Server Group
Name.
-
Type an optional RADIUS Server Group
Description.
-
Select the User Database type.
- Active Directory: Select to enable an Extreme
Networks RADIUS server to interoperate with an Active Directory
server.
- LDAP Server: Select to direct user account
look-ups to one or more LDAP servers.
- Local Database: Select to enable an Extreme
Networks device to support authentication for local user groups.
-
Select the corresponding check
boxes for the devices that you want to configure.
-
Select CREATE
NEW to add a new AAA server profile.
Alternately, select USE EXISTING, and then select an AAA server profile from
the list.
-
Type a Profile Name.
-
Type an optional Profile Description.
-
Select the User Database type: Active
Directory, LDAP Server, or
Local Database.
Available configuration options depend on the type of database that you
select.
-
Type a User Group Attribute, and then select an existing
user group from the
menu.
-
Expand the Additional
Settings section, and then enter the number of seconds for each
response scenario.
The Additional Settings section is not available for
local databases.
-
Select Enable Caching of
Credentials to improve performance across WAN links.
-
Type the number of seconds to
retain the credential cache.
-
Complete the database-specific configuration options as follows:
-
Select Security
Options, and then Configure AAA Server Security Options.
-
Select Approved RADIUS
Clients, and then Add Approved RADIUS Clients.
-
Select SAVE RADIUS SERVER.
Continue configuring the RADIUS server profile.