User guide

Security Administration NMS RADIUS Client Support
112
AlliedView NMS Administration Guide
FIGURE 4-1 Configuring NMS as RADIUS Client
4.8.3.3 Cisco Secure ACS Example
Cisco Secure ACS is a widely-used fee-based RADIUS and TACAC server available from http://www.cisco.com. It comes in
platform-specific versions, including various Windows versions.
Note: The NMS is the RADIUS client, which is known as the NAS in the RFC, and is called the AAA Client in Cisco terminology.
Note: Whereas FreeRADIUS defines VSAs in their
dictionary files, Cisco defines VSAs in a RADIUS Vendor/VSA import file.
Note: Whereas FreeRADIUS defines users and clients in simple configuration files, Cisco uses an extensive web-enabled graphical
user interface.
To configure Cisco Secure ACS for the NMS, perform the following:
1. To configure the VSA file, perform the following:
1. Create a RADIUS Vendor/VSA import file, for example, c:\ACS_Data\allied-telesis.ini, containing the VSA definition:
[User Defined Vendor]
Name=Allied-Telesis
IETF Code=207
VSA 1=ATI-avnms-group
[ATI-avnms-group]
Type=STRING
Profile=OUT
2. Use CSUtil.exe -listUDV to list available slot numbers and identify one that is unassigned. If none are unassigned, this
RADIUS instance has reached its maximum and cannot be used. Either free one or get another server.
2. Add the NMS server as the RADIUS client.