User's Manual

Table Of Contents
TD 92579EN
15 October 2014 / Ver. M
Installation and Operation Manual
IP-DECT Base Station & IP-DECT Gateway (software version 7.2.X)
29
7 Click "OK".
Set up the client
Depending on the type of system the IPBS/IPBL can
be configured to act as a client in three
different ways:
Configure IPBS/IPBL as a client in a small
existing system (few clients), see Configure
IPBS/IPBL as a client in a small existing system (few clients).
Configure IPBS/IPBL as a client in a large existing system
(many clients), see Configure
IPBS/IPBL as a client in a large
existing system (many clients) on page 30.
Configure IPBS/IPBL as a client in a new system, see Configure IPBS/IPBL as a client in a
new system on page 30.
Configure IPBS/IPBL as a client in a small existing system (few clients)
The location of the Kerberos server must be
configured locally on each client. The server
must be configured as a client as well so that it can also join the realm. To configure each
IPBS/IPBL as a client, do the following:
1 Make sure that the IP address of a NTP time server is specified. Select General >
NTP
.
2 Select General > Admin.
3Go to the Add
itional Kerberos encryption types section.
4 Select the Enable AE
S and RC4 check box.
5Go to the Authe
ntication Servers section.
6In the Realm/Domain
text field, enter the realm name specified in the Kerberos
server.
7In the Address
text field, enter the IP address of the Kerberos server. In the Kerberos
server enter 127.0.0.1 (localhost) as the IP address. The Port and the Admin Port
text fields are filled out automatically with default ports. Note: If other than default
ports are used, in the text fields replace the default ports with the other ports.
8In the Seco
ndary Address text field, enter the IP address of the secondary Kerberos
server. In the secondary Kerberos server enter 127.0.0.1 (localhost) as the IP
address. The Secondary Port and the Secondary Admin Port text fields are filled out
automatically with default ports. Note: If other than default ports are used, in the
text fields replace the default ports with the other ports.
9 Click "OK".
Join the realm
To enable delegated authenticatio
n using the Kerberos server, each client must join the
Kerberos realm of the server. To join the realm, do the following:
1 Select General > Admin.
Role • Administrator: Write access to all
device parameter
settings.
• Auditor: Read access to device
p
arameter settings.
• Join Realm: Add devices to the
r
ealm. Is used only to add or remove
devices in the realm. This role
cannot be used to login to the GUI.