Get the strength and security of RADIUS without building, maintaining, or monitoring physical servers. With RADIUS Reply Attributes, you can lock down access to your network.
To configure RADIUS Reply Attributes for User Groups in the API, read Con.
Considerations
- If you’ve configured RADIUS Reply Attributes for user groups in the API, they’re now listed in the RADIUS tab of the User Groups panel.
- You can add up to 50 attributes per user group.
- RADIUS Reply Attributes are returned in the Access-Accept messages sent to endpoints that authenticate with ºÚÁϺ£½Ç91Èë¿Ú RADIUS.
- When a user is part of multiple user groups that are each configured with RADIUS Reply Attributes, each attribute is returned in the access-accept message after successful user authentication to the ºÚÁϺ£½Ç91Èë¿Ú RADIUS Server.
Adding RADIUS Reply Attributes to User Groups
When you’re ready to lock down user access to your network, add RADIUS Reply Attributes to a User Group.
To add RADIUS Reply Attributes to a User Group:
- Log in to the Admin Portal:
- Go to USER MANAGEMENT > User Groups.
- Select an existing User Group or create a new one. To create a new user group, see .
- From the User Groups panel, select the RADIUS tab.
- °Õ³ó±ðÌý RADIUS Reply Attributes expands by default.
- Click add new attribute.
- Enter a RADIUS Attribute Name and a RADIUS Attribute Value.Ìý
- Click Save.
VLAN Tagging
VLAN (Virtual Local Area Network) tagging is common when configuring RADIUS. VLAN tagging can isolate traffic on the physical network to one or more virtual networks. For more information about VLAN tagging, watch this video:
To steer traffic correctly on the physical network, VLAN tagging requires three separate attributes for presentation: Tunnel-Type, Tunnel-Private-Group-ID, and Tunnel-Medium-Type.
Viewing RADIUS Reply Attributes
You can view the RADIUS Reply Attributes that are associated with each user group from the RADIUS panel or the User Groups panel.
To view RADIUS Reply Attributes from the RADIUS panel:
- Log in to the Admin Portal:
- Go to USER AUTHENTICATION > RADIUS.
- Select an existing network or create a new one. To create a new RADIUS network, see Get Started: RADIUS.
- From the RADIUS panel, select the User Groups tab.
- Is this missing the step of selecting a user group?
- Click View Reply Attributes to view the RADIUS Reply attributes that are associated with the User Group.
- Click done to close the RADIUS Reply Attribute modal.
To view RADIUS Reply Attributes from the User Groups panel:
- Log in to the Admin Portal:
- Go to USER MANAGEMENT > User Groups.
- Select a User Group.
- From the User Group panel, select the RADIUS tab.
- The RADIUS Reply Attributes expands by default.
Deleting RADIUS Reply Attributes from a User Group
You can remove RADIUS reply attributes from a user group.
To delete a RADIUS Reply Attribute from a User Group:
- Log in to the Admin Portal:
- Go to USER MANAGEMENT > User Groups.
- Select a User Group.
- From the User Group panel, select the RADIUS tab.
- Expand RADIUS Reply Attributes.
- Click the trashcan icon to delete the RADIUS Reply Attributes you want to remove from the User Group.
- Click Save.