R3204P16-HP Load Balancing Module Security Configuration Guide-6PW101

133
Protocols and standards
The following protocols and standards are related to AAA and RADIUS:
RFC 2865, Remote Authentication Dial In User Service (RADIUS)
RFC 2866, RADIUS Accounting
RFC 2867, RADIUS Accounting Modifications for Tunnel Protocol Support
RFC 2868, RADIUS Attributes for Tunnel Protocol Support
RFC 2869, RADIUS Extensions
AAA configuration considerations and task list
To configure AAA, you must complete these tasks on the NAS:
1. Configure the required AAA schemes.
Local authentication—Configure local users and the related attributes, including the usernames and
passwords of the users to be authenticated.
Remote authentication—Configure the required RADIUS schemes. You must configure user
attributes on the servers accordingly.
2. Configure AAA methods for the users’ ISP domains.
Authentication method—No authentication (none), local authentication (local), or remote
authentication (scheme)
Authorization method—No authorization (none), local authorization (local), or remote
authorization (scheme)
Accounting method—No accounting (none), local accounting (local), or remote accounting
(scheme)
Figure 114 illu
strates the configuration procedure.
Figure 114 AAA configuration procedure