CLI Reference Guide
Configuring and Managing Access Rules for Network Users 297
Pass-Through — No protocol is used by the WX. 3Com Mobility
System Software (MSS) sends the EAP processing to a RADIUS server.
If you select PEAP, the EAP Sub-Protocol is MS-CHAPV2. For other
protocols, the EAP Sub-Protocol is None.
8 To select the authentication method, click Choose Available, then select
the method from the list:
RADIUS server group — A server group that you have configured
previously.
LOCAL — The WX switch’s local database.
You can add one or both methods to the list.
If you specify a RADIUS server group as the first method and a user is
denied access by the RADIUS server, no authentication and
authorization are attempted with the other methods specified in the
list.
If you specify LOCAL as the first method and a user is not in the local
user database on the WX, authentication and authorization are
attempted with a RADIUS server group if one is defined in the method
list.
The method you select for authentication is also used for authorization.
To add a server group, click Create and go to “To define a RADIUS server
group” on page 268. After you create the server group, click Choose
Available and then select the server group from the list.
9 Do one of the following:
To configure accounting, go to “To configure accounting settings,
follow these steps.”.
To save changes and close the wizard, click Finish.
Configuring
Accounting
To configure accounting settings, follow these steps.
1 Click Accounting at the top of the wizard to display the following page.
(The page contents are the same for 802.1X, MAC, last-resort, and
WebAAA.)
2 To enable this accounting rule for the SSID, select Enabled. By default, a
rule you configure in 3WXM is disabled, which means 3WXM does not
add the rule to a WX switch’s configuration.