Chapter 36 AAA Server
UAG4100 User’s Guide
338
Backup Server
Address
If the RADIUS server has a backup authentication server, enter its address here.
Backup
Authentication
Port
Specify the port number on the RADIUS server to which the UAG sends authentication
requests. Enter a number between 1 and 65535.
Key
Enter a password (up to 15 alphanumeric characters) as the key to be shared between
the external authentication server and the UAG.
The key is not sent over the network. This key must be the same on the external
authentication server and the UAG.
Accounting Server
Settings
Server Address
Enter the IP address or Fully-Qualified Domain Name (FQDN) of the RADIUS accounting
server.
Accounting Port
Specify the port number on the RADIUS server to which the UAG sends accounting
information. Enter a number between 1 and 65535.
Backup Server
Address
If the RADIUS server has a backup accounting server, enter its address here.
Backup
Accounting Port
Specify the port number on the RADIUS server to which the UAG sends accounting
information. Enter a number between 1 and 65535.
Key
Enter a password (up to 15 alphanumeric characters) as the key to be shared between
the external accounting server and the UAG.
The key is not sent over the network. This key must be the same on the external
accounting server and the UAG.
Maximum Retry
Count
At times the UAG may not be able to use the primary RADIUS accounting server. Specify
the number of times the UAG should reattempt to use the primary RADIUS server before
attempting to use the secondary RADIUS server. This also sets how many times the UAG
will attempt to use the secondary RADIUS server.
For example, you set this field to 3. If the UAG does not get a response from the primary
RADIUS server, it tries again up to three times. If there is no response, the UAG tries the
secondary RADIUS server up to three times.
If there is also no response from the secondary RADIUS server, the UAG stops attempting
to authenticate the subscriber. The subscriber will see a message that says the RADIUS
server was not found.
Enable Accounting
Interim update
Select this to have the UAG send subscriber status updates to the RADIUS server at the
interval you specify.
Interim Interval
Specify the time interval for how often the UAG is to send a subscriber status update to
the RADIUS server.
General Server
Settings
Timeout
Specify the timeout period (between 1 and 300 seconds) before the UAG disconnects
from the RADIUS server. In this case, user authentication fails.
Search timeout occurs when either the user information is not in the RADIUS server or
the RADIUS server is down.
NAS IP Address
If the RADIUS server requires the UAG to provide the Network Access Server IP address
attribute with a specific value, enter it here.
NAS Identifier
If the RADIUS server requires the UAG to provide the Network Access Server identifier
attribute with a specific value, enter it here.
Case-sensitive
User Names
Select this if the server checks the case of the usernames.
Table 165
Configuration > Object > AAA Server > RADIUS > Add/Edit (continued)
LABEL
DESCRIPTION