User guide
Example Configurations NMS RADIUS Client Support
4-33
AlliedView NMS Administration Guide (Security Administration)
4.8.3 Example Configurations
4.8.3.1 Overview
The following examples go through setting up of the NMS RADIUS Client Support and include inputs at both the RADIUS
and NMS servers.
Regardless of the platform used (FreeRadius or Cisco Secure ACS), there are four main steps. The first three are for config-
uring the RADIUS server:
1. Identify the Vendor Specific Attribute (VSA) that names the permission groups
2. Identify the NMS servers that will serve as RADIUS clients
3. Define user ids and assign them to permission groups, information that is included with the VSA
The fourth step is:
4. Configure the NMS server to use the RADIUS server(s).
The following table shows example accounts that are used in this example.
Note: Admin and Users are the default groups on the NMS available for assignment, though custom groups
may be added using the Security Manager on the NMS client. When adding custom groups to a network
of NMS servers, the same custom groups must be added to each server individually to be usable by the
same set of RADIUS-authenticated users. Refer to 4.8.4.
Note: Users can optionally be assigned to multiple groups. If so, in some RADIUS servers group names must
be separated by commas, contain no white space, and the list must be enclosed by quotation marks.
Refer to the server documentation. (The FreeRadius example shows this.)
TABLE 4-16 Account Name Examples
User Name Password Groups Notes
Keith_K knk1knkZ Admin Already created on the NMS
John_L jhl6jhlX Users Not already created on the NMS
Paul_M plh7plhY Admin Already created on the NMS