Users Guide

Parameter Description
l oui-nic: Send MAC address as XXXXXX-XXXXXX
Default: none
Service-type of FRAMED-
USER
Send the service-type as FRAMED-USER instead of LOGIN-USER. For more
information, see RADIUS Service-Type Attribute on page 253.
Default: Disabled
Radsec Enable or disable RADIUS over TLS for this server.
Default: Disabled
Radsec Trusted CA
Name
Enter the trusted CA name to be used to verify this server.
Radsec Server Cert
Name
Enter the certificate name of the trusted Radsec server certificate.
Radsec Client Cert Enter the certificate name, the controller should use for Radsec request.
called-station-id Allows user to send different values for Called Station ID. Configure the
following parameters for Called Station ID:
l csid_type: Called station ID type.
Default: macaddr
l include_ssid: Enabling this option includes SSID in the Called Station ID
along with csid_type.
Default: disabled
l csid_delimiter: Enabling this option allows to send this delimiter to
separate csid_type and ssid in the Called Station ID.
Default: colon
(example: 00-1a-1e-00-1a-b8:dotx-ssid)
RADIUS Service-Type Attribute
The controller sends the following Service-Type attribute values for RADIUS authentication requests.
RADIUS Attribute Authentication Type Attribute Value
Service-Type MAC Call-Check
802.1X Framed
Captive Portal Login
Table 43: RADIUS Service-Type Attributes
The service-type-framed-user configuration of the RADIUS server overwrites all the attribute values to Framed
irrespective of the authentication type. Existing deployments that depend upon this attribute for their third-
party RADIUS integrations should make changes to support these new service types.
Dell Networking W-Series ArubaOS 6.4.x | User Guide Authentication Servers | 253