User guide
Security Administration NMS RADIUS Client Support
110
AlliedView NMS Administration Guide
4.8.3 Example Configurations
4.8.3.1 Overview
The following examples go through setting up of the NMS RADIUS Client Support and include inputs at both the RADIUS
and NMS servers.
Regardless of the platform used (FreeRadius or Cisco Secure ACS), there are four main steps. The first three are for
configuring the RADIUS server:
1. Identify the Vendor Specific Attribute (VSA) that names the permission groups
2. Identify the NMS servers that will serve as RADIUS clients
3. Define user ids and assign them to permission groups, information that is included with the VSA
The fourth step is:
4. Configure the NMS server to use the RADIUS server(s).
The following table shows example accounts that are used in this example.
Note: Admin and Users are the default groups on the NMS available for assignment, though custom groups may be added using the
Security Manager on the NMS client. When adding custom groups to a network of NMS servers, the same custom groups
must be added to each server individually to be usable by the same set of RADIUS-authenticated users. Refer to 4.8.4.
Note: Users can optionally be assigned to multiple groups. If so, in some RADIUS servers group names must be separated by
commas, contain no white space, and the list must be enclosed by quotation marks. Refer to the server documentation. (The
FreeRadius example shows this.)
TABLE 4-16 Account Name Examples
User Name Password Groups Notes
Keith_K knk1knkZ Admin Already created on the NMS
John_L jhl6jhlX Users Not already created on the NMS
Paul_M plh7plhY Admin Already created on the NMS