RADIUS

Options for authenticating with RADIUS servers.

Use RADIUS (Remote Authentication Dial-In User Service) to authenticate and authorize users.

The RADIUS server must be configured to respond with the list of local authentication groups that the RADIUS user is a member of inside the Frame-Filter-ID attribute. The format of the attribute must be group_name=<GROUPS> where <GROUPS> is a comma-separated list of group names. If the Frame-Filter-ID is already in use, the groups can be separated using colons. For example: ...:group_name=admin,operator:....

  • Servers - RADIUS servers to contact when authenticating a user.

Properties

NAS ID

The Network Access Server Identifier (NAS ID) sent in requests to RADIUS servers.

Leave this field empty to use the device's hostname.

  • Data type: string
  • Configuration
  • Optional

CLI: (cli)> config auth method <index> radius nas-id