Users Guide

Table Of Contents
246 | Authentication Servers Dell PowerConnect ArubaOS 5.0 | User Guide
c. Select Set Role from the drop-down menu.
d. Click Add.
5. Click Apply.
In the CLI
aaa server-group internal
set role condition Role value-of
Assigning Server Groups
You can create server groups for the following purposes:
z user authentication
z management authentication
z accounting
You can configure all types of servers for user and management authentication (see Table 50). Accounting is only
supported with RADIUS and TACACS+ servers when RADIUS or TACACS+ is used for authentication.
User Authentication
For information about assigning a server group for user authentication, see the configuration chapter for the
authentication method.
Management Authentication
Users who need to access the controller to monitor, manage, or configure the Dell user-centric network can be
authenticated with RADIUS, TACACS+, or LDAP servers or the internal database.
In the WebUI
1. Navigate to the Configuration > Management > Administration page.
2. Under the Management Authentication Servers section, select the Server Group.
3. Click Apply.
In the CLI
aaa authentication mgmt
server-group <group>
Table 50 Server Types and Purposes
RADIUS TACACS+ LDAP Internal Database
User authentication Yes Yes Yes Yes
Management authentication Yes Yes Yes Yes
Accounting Yes Yes No No
Note: Only user record attributes are returned upon a successful authentication. Therefore, to derive a different management role
other than the default mgmt auth role, set the server derivation rule based on the user attributes.