User Manual

Chapter 11 Configuring Security Features 49
device server but then be automatically connected to a host on the LAN.
You can implement autoconnection in the following ways:
By port where all port users are automatically connected to the
same host. The device server is completely transparent to them.
By user where a user is required to login and may be required to
supply a password, but once the user is authenticated, an automatic
connection to a hosts made.
For information on configuring autoconnection, see "Configuring
Autoconnection" on page 35.
Method 2: Menus
Menus select destination systems without having to access the device
server command line. For information on configuring menus, see the
description of the set menu command in the Digi One/PortServer TS
Command Reference.
Using RADIUS to Authenticate Users
This section provides a description of RADIUS and explains how to
configure device server to use RADIUS. Digi device and terminal servers
are capable of authenticating reverse Telnet users with RADIUS. The
Service-Type attribute of the RADIUS server must be defined correctly for
the Digi devices to grant access.
What is RADIUS?
RADIUS (remote authentication dial-in user service) is a method of
maintaining a database of profiles of dial-in users. These profiles can
include login and password information, as well as other user attributes.
RADIUS Components
RADIUS requires two components, an authentication host server and client
protocols. The device server implements the client protocol. A host must
implement the authentication server application.
RADIUS Table Key
The numbers in the following tables have the following meaning:
RADIUS Attributes (RFC 2138) Supported
The following attributes are supported in the Digi device server RADIUS
# Meaning
0 This attribute must not
be present.
0+ Zero or more instances of this attribute may be present.
0-1 Zero or one instance of this attribute may be present.
1 Exactly one instance of this attribute must
be present.