Owners manual
DGS-1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide
695
Appendix C - RADIUS Attributes Assignment
The RADIUS Attributes Assignment on the DGS-1510 is used in the following modules: Console, Telnet,
SSH, Web, 802.1X, MAC-based Access Control, JWAC, and WAC.
The description that follows explains the following RADIUS Attributes Assignment types:
• Privilege Level
• Ingress/Egress Bandwidth
• 802.1p Default Priority
• VLAN
• ACL
To assign the Privilege Level by the RADIUS server, the proper parameters should be configured on the
RADIUS server. The table below shows the parameters for the bandwidth.
The parameters of the Vendor-Specific attributes are:
Vendor-Specific Attribute Description Value Usage
Vendor-ID Defines the vendor. 171 (DLINK) Required
Vendor-Type Defines the attribute. 1 Required
Attribute-Specific Field Used to assign the privilege
level of the user to operate
the switch.
Range (1-15) Required
If the user has configured the privilege level attribute of the RADIUS server (for example, level 15) and
the Console, Telnet, SSH, and Web authentication is successful, the device will assign the privilege level
(according to the RADIUS server) to this access user. However, if the user does not configure the
privilege level attribute and authenticates successfully, the device will not assign any privilege level to the
access user. If the privilege level is configured less than the minimum supported value or greater than the
maximum supported value, the privilege level will be ignored.
To assign the Ingress/Egress Bandwidth by the RADIUS server, the proper parameters should be
configured on the RADIUS Server. The table below shows the parameters for bandwidth.
The parameters of the Vendor-Specific attributes are:
Vendor-Specific Attribute Description Value Usage
Vendor-ID Defines the vendor. 171 (DLINK) Required
Vendor-Type Defines the attribute. 2 (for ingress bandwidth)
3 (for egress bandwidth)
Required
Attribute-Specific Field Used to assign the
bandwidth of a port.
Unit (Kbits) Required
If the user has configured the bandwidth attribute of the RADIUS server (for example, ingress bandwidth
1000Kbps), and 802.1X, MAC-based Access Control, JWAC or WAC authentication is successful, the
device will assign the bandwidth (according to the RADIUS server) to the port. However, if the user does