User's Manual

User Manual
83
Local authorization (local): Authorization is performed based on the
properties configured by the NAS for the local account.
Tacacs+ authorization: Users are authorized by the Tacacs+ server.
Authorization after successful Radius authentication: Authorization is
bound to authentication, and cannot be performed independently
over Radius.
Radius
LDAP authorization
Method for enabling authentication and authorization in ER800:
Click "Administration >> AAA >> AAA Settings". 1, 2, and 3 are corresponding
to Radius, Tacacs, ad LDAP respectively. Authentication entries 1, 2, and 3 must
be corresponding to authorization entries 1, 2, and 3 respectively. If all of radius,
tacacs+, and local are set, the priority sequence will be as follows: 1 > 2 > 3.