4.9.3.2
RADIUS client
Authentication over an external server
The concept of RADIUS is based on an external authentication server.
Each row of the table contains access data for one server. In the search order, the primary
server is queried first. If the primary server cannot be reached, secondary servers are queried
in the order in which they are entered.
If no server responds, there is no authentication.
Description of the displayed boxes
The page contains the following boxes:
● RADIUS Authorization Mode
For the login authentication, the RADIUS authorization mode specifies how the rights are
assigned to the user with a successful authentication.
– Conventional
In this mode the user is logged in with administrator rights if the server returns the value
"Administrative User" to the device for the attribute "Service Type". In all other cases the
user is logged in with read rights.
– SiemensVSA
In this mode, the assignment of rights depends on whether and which group the server
returns for the user and whether or not there is an entry for the user in the table "External
User Accounts".
The table has the following columns:
● Select
Select the row you want to delete.
● RADIUS Server Address
Enter the IPv4 address or the FQDN (Fully Qualified Domain Name) of the RADIUS server.
● Server Port
Here, enter the input port on the RADIUS server. As default, input port 1812 is set. The
range of values is 1 to 65535.
● Shared Secret
Enter your access ID here. The range of values is 1...128 characters
Configuring with Web Based Management
4.9 "Security" menu
SCALANCE S615 Web Based Management
Configuration Manual, 11/2019, C79000-G8976-C388-08
263